← Back

Netsurf Browser

netsurf-browser

8 CVEs • 3 products

Products (3)

Click to collapse
Toggle
Netsurf
netsurf
Libnsbmp
libnsbmp
Libnsgif
libnsgif

CVEs (8)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Netsurf Browser
1Netsurf
Jun 17, 2026
Nov 3, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
An issue in NetSurf v3.11 causes the application to read uninitialized heap memory when creating a dom_event structure.
1Netsurf Browser
1Netsurf
Jun 17, 2026
Nov 3, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
NetSurf 3.11 is vulnerable to Use After Free in dom_node_set_text_content function.
1Netsurf Browser
1Netsurf
Jun 17, 2026
Nov 3, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
An issue in NetSurf v.3.11 allows a remote attacker to execute arbitrary code via the dom_node_normalize function
2Debian
Netsurf Browser
2Debian Linux
Netsurf
Nov 21, 2024
Feb 21, 2020
N/A· v4
5.5 MEDIUM· v3
2.1 LOW· v2
Information-disclosure vulnerability in Netsurf through 2.8 due to a world-readable cookie jar.
1Netsurf Browser
1Libnsbmp
Nov 21, 2024
Feb 18, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read) via a crafted color table to the (1) bmp_decode_rgb or (2) bmp_decode_rle function.
1Netsurf Browser
1Libnsgif
Nov 21, 2024
Feb 18, 2020
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Stack-based buffer overflow in the gif_next_LZW function in libnsgif.c in Libnsgif 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafte...Show more
Stack-based buffer overflow in the gif_next_LZW function in libnsgif.c in Libnsgif 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted LZW stream in a GIF file.Show less
1Netsurf Browser
1Libnsgif
Nov 21, 2024
Feb 18, 2020
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
The gif_next_LZW function in libnsgif.c in Libnsgif 0.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted LZW stream in a GIF file.
1Netsurf Browser
1Libnsbmp
Nov 21, 2024
Feb 12, 2020
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the las...Show more
Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the last row of RLE data in a crafted BMP file.Show less