CVE-2004-1616: Medium severity Links Links vulnerability
Published Oct 18, 2004
·Updated
Links allows remote attackers to cause a denial of service (memory consumption) via a web page or HTML email that contains a table with a td element and a large rowspan value,as demonstrated by mangleme.
Affected Software
9 affected components
Links Links=0.97
Links Links=0.99
Links Links=0.96
Links Links=0.94
Links Links=0.93
Links Links=0.95
Links Links=0.92
Links Links=0.91
Links Links=0.98
Event History
Oct 18, 2004
CVE Published
04:00 AM
Feb 20, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1616?
CVE-2004-1616 is classified as a denial of service vulnerability.
2
How do I fix CVE-2004-1616?
To fix CVE-2004-1616, upgrade to a version of Links that is later than 0.99, which addresses the vulnerability.
3
What versions are affected by CVE-2004-1616?
CVE-2004-1616 affects Links versions 0.91 to 0.99.
4
What is the impact of CVE-2004-1616?
The impact of CVE-2004-1616 is remote denial of service caused by excessive memory consumption.
5
Can CVE-2004-1616 be exploited via email?
Yes, CVE-2004-1616 can be exploited through an HTML email that contains a specially crafted table.