Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Yngweio

#35373of 53,630
7.5Total CVSS
Vulnerabilities · 1
PT-2017-14808
7.5
2017-12-10
Html Tidy · Tidy · CVE-2017-17497
**Name of the Vulnerable Software and Affected Versions** Tidy version 5.7.0 **Description** The issue allows attackers to cause a denial of service, resulting in a Segmentation Fault. This occurs because the `currentNode` variable is modified in a loop without validating its new value during the "children of the head" processing feature in the `prvTidyTidyMetaCharset` function. **Recommendations** For Tidy version 5.7.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.