An array index can be out of bounds in w3m while parsing maliciously crafted input. Upstream bug: https://github.com/tats/w3m/issues/38 Upstream fix: https://github.com/tats/w3m/commit/0c3f5d0e0d9269ad47b8f4b061d7818993913189 References: http://seclists.org/oss-sec/2016/q4/488
Created w3m tracking bugs for this issue: Affects: fedora-all [bug 1401423] Affects: epel-7 [bug 1401424]