PoC Index

CVE-2005-3120

CRITICAL 9.8EPSS 23.3%

Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP servers to execute arbitrary code via certain article headers containing Asian characters that cause Lynx to add extra escape (ESC) characters.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
23.26% chance of exploitation in the next 30 days, 98th percentile
Published
2005-10-17
Updated
2024-08-07

ExploitDB entries (1)

References

Related