Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [day] [month] [year] [list]
Date: Fri, 4 Mar 2016 10:59:22 -0300
From: Gustavo Grieco <>
Subject: tidy-html5: infinite loop parsing an html file

A DoS parsing a html file was discovered in tidy-html5 (affecting 5.1.25
and last revisions) using afl. Technical details are available here:


Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.