High severity7.5NVD Advisory· Published Dec 10, 2017· Updated May 13, 2026
CVE-2017-17497
CVE-2017-17497
Description
In Tidy 5.7.0, the prvTidyTidyMetaCharset function in clean.c allows attackers to cause a denial of service (Segmentation Fault), because the currentNode variable in the "children of the head" processing feature is modified in the loop without validating the new value.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/htacg/tidy-html5/issues/656nvdIssue TrackingPatchThird Party Advisory
News mentions
0No linked articles in our index yet.