Family: Red Hat Local Security Checks --> Category: infos
RHSA-2005-803: lynx Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the lynx packages
Detailed Explanation for this Vulnerability Test
An updated lynx package that corrects a security flaw is now available.
This update has been rated as having critical security impact by the Red
Hat Security Response Team.
Lynx is a text-based Web browser.
Ulf Harnhammar discovered a stack overflow bug in Lynx when handling
connections to NNTP (news) servers. A possible hacker could create a web page
redirecting to a malicious news server which could execute arbitrary code
as the user running lynx. The Common Vulnerabilities and Exposures project
assigned the name CVE-2005-3120 to this issue.
Users should update to this erratum package, which contains a backported
patch to correct this issue.
Solution : http://rhn.redhat.com/errata/RHSA-2005-803.html
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.