{"id":"CVE-2017-1000211","details":"Lynx before 2.8.9dev.16 is vulnerable to a use after free in the HTML parser resulting in memory disclosure, because HTML_put_string() can append a chunk onto itself.","modified":"2026-07-08T12:54:06.183277Z","published":"2017-11-17T15:29:00.310Z","related":["SUSE-SU-2017:3180-1"],"references":[{"type":"WEB","url":"http://www.securityfocus.com/bid/102180"},{"type":"WEB","url":"https://lists.debian.org/debian-lts-announce/2017/11/msg00021.html"},{"type":"ADVISORY","url":"http://lynx.invisible-island.net/current/CHANGES.html"},{"type":"ADVISORY","url":"https://github.com/ThomasDickey/lynx-snapshots/commit/280a61b300a1614f6037efc0902ff7ecf17146e9"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/thomasdickey/lynx-snapshots","events":[{"introduced":"f3c226747c841f40c7a86c1dd07b478114dfcd6c"},{"last_affected":"f3c226747c841f40c7a86c1dd07b478114dfcd6c"},{"fixed":"280a61b300a1614f6037efc0902ff7ecf17146e9"}],"database_specific":{"source":["CPE_STRING","REFERENCES"],"cpe":"cpe:2.3:a:lynx_project:lynx:2.8.9:dev15:*:*:*:*:*:*","extracted_events":[{"introduced":"2.8.9-dev15"},{"last_affected":"2.8.9-dev15"}]}}],"versions":["2.8.9-dev15","v2-8-9dev_16","v2-8-9dev_15g"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-1000211.json","vanir_signatures_modified":"2026-07-08T12:54:06Z","vanir_signatures":[{"signature_version":"v1","source":"https://github.com/thomasdickey/lynx-snapshots/commit/280a61b300a1614f6037efc0902ff7ecf17146e9","target":{"file":"src/HTML.c"},"deprecated":false,"digest":{"line_hashes":["276839244041874253570716174498195113638","307313134925977423242669220638044571015","138471024090996347877172975038942003109","38578827775557295977188478865522106010","110202609554451055184914786519942653828","23538530354550592995262881671355683419","79430180806067039076195305377639297800","55074426441029647376758328889087463288","3329120400151045882173454259733388426","120739159841392223983970639681273638075","122459131643402643921618828426843906689","299006699557291525540079984182083068289","64185396801546596709603834300295942789","243963935790960629377563581495005918140","117537319363288467654856474891996104371","297470778873332004540178574241275155980","278090903608714666961036483297682549639","101342505753597164020756215211144041648","89767970756697346388065157250709990627","126299550969772521555373646403212372434","214223916378735274028816894264026879274","77759529769371009645296606445069848711","7185927236794311802030527710850114899","276016807517611968322827676265961971776","74350536191421510730911868521372287158","47852397670890322263799896502415851986","112841107492005538712845046354219144262","102514329368412264853660561048453178848","208647209538448564612630161310793050153","108587633537507210242609878158511307392","317713673196000103948125696324209305928","65623567037517039063726813147792559939","68590562356389739011233555522011571148"],"threshold":0.9},"id":"CVE-2017-1000211-0e44be72","signature_type":"Line"},{"signature_version":"v1","source":"https://github.com/thomasdickey/lynx-snapshots/commit/280a61b300a1614f6037efc0902ff7ecf17146e9","target":{"file":"src/HTML.c","function":"HTML_put_string"},"deprecated":false,"digest":{"function_hash":"27363568686723496792149262710242149081","length":2457},"id":"CVE-2017-1000211-a1743f3b","signature_type":"Function"}]}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"}]}