ALAS-2018-938 ---- curl, libcurlID: oval:org.secpod.oval:def:1600831 | Date: (C)2018-01-31 (M)2024-01-29 |
Class: PATCH | Family: unix |
The NTLM authentication feature in curl and libcurl before 7.57.0 on 32-bit platforms allows attackers to cause a denial of service or possibly have unspecified other impact via vectors involving long user and password fields. The FTP wildcard function in curl and libcurl before 7.57.0 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a string that ends with an "[" character
Platform: |
Amazon Linux AMI |