Advisories ยป MGASA-2021-0422

Updated lynx packages fix security vulnerability

Publication date: 23 Sep 2021
Modification date: 23 Sep 2021
Type: security
Affected Mageia releases : 8
CVE: CVE-2021-38165

Description

Lynx through 2.8.9 mishandles the userinfo subcomponent of a URI, which
allows remote attackers to discover cleartext credentials because they
may appear in SNI data. (CVE-2021-38165)
                

References

SRPMS

8/core