[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249622

 
 

909

 
 

195549

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-2713-1 curl -- heap overflow

ID: oval:org.secpod.oval:def:601061Date: (C)2013-06-24   (M)2023-12-07
Class: PATCHFamily: unix




Timo Sirainen discovered that cURL, an URL transfer library, is prone to a heap overflow vulnerability due to bad checking of the input data in the curl_easy_unescape function. The curl command line tool is not affected by this problem as it doesn"t use the curl_easy_unescape function.

Platform:
Debian 7.0
Debian 6.0
Product:
curl
Reference:
DSA-2713-1
CVE-2013-2174
CVE    1
CVE-2013-2174
CPE    84
cpe:/a:haxx:curl:7.21.0
cpe:/a:haxx:curl:7.21.3
cpe:/a:haxx:curl:7.23.1
cpe:/a:haxx:curl:7.21.4
...

© SecPod Technologies