On Mon, 21 Feb 2005 16:09:49 -0500 Joey Hess <[EMAIL PROTECTED]> wrote:
> Package: links > Version: 0.99+1.00pre12-1 > Severity: normal > Tags: security > > The following web page causes links to hang. I let it sit for about 10 > minutes. It's also eating memory during this time. > > http://lcamtuf.coredump.cx/mangleme/gallery/links_die1.html > > This is CAN-2004-1616: > > Links allows remote attackers to cause a denial of service (memory > consumption) > via a web page or HTML email that contains a table with a td element and a > large rowspan value,as demonstrated by mangleme. I think I reported this upstream when the CAN was out in 2004, and there was no new release since then. :( The problem is minor, but still a bug. Thanks, Peter -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]