PublicDate: 2005-10-17 20:06:00 UTC Candidate: CVE-2005-3120 References: https://ubuntu.com/security/notices/USN-206-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3120 Description: Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and earlier allows remote NNTP servers to execute arbitrary code via certain article headers containing Asian characters that cause Lynx to add extra escape (ESC) characters. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_lynx-cur: released (2.8.6-18) edgy_lynx-cur: released (2.8.6-18) feisty_lynx-cur: released (2.8.6-18) devel_lynx-cur: released (2.8.6-18) dapper_lynx: released (2.8.5-2ubuntu1) edgy_lynx: released (2.8.5-2ubuntu1) feisty_lynx: released (2.8.5-2ubuntu1) devel_lynx: released (2.8.5-2ubuntu1) upstream_lynx: needs-triage upstream_lynx-cur: needs-triage