Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-8620

Опубликовано: 01 авг. 2018
Источник: nvd
CVSS3: 6.5
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

The 'globbing' feature in curl before version 7.51.0 has a flaw that leads to integer overflow and out-of-bounds read via user controlled input.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:*
Версия до 7.51.0 (исключая)

EPSS

Процентиль: 67%
0.00546
Низкий

6.5 Medium

CVSS3

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-120
CWE-125

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 7 лет назад

The 'globbing' feature in curl before version 7.51.0 has a flaw that leads to integer overflow and out-of-bounds read via user controlled input.

CVSS3: 6.5
redhat
больше 8 лет назад

The 'globbing' feature in curl before version 7.51.0 has a flaw that leads to integer overflow and out-of-bounds read via user controlled input.

CVSS3: 6.5
debian
почти 7 лет назад

The 'globbing' feature in curl before version 7.51.0 has a flaw that l ...

CVSS3: 9.8
github
около 3 лет назад

The 'globbing' feature in curl before version 7.51.0 has a flaw that leads to integer overflow and out-of-bounds read via user controlled input.

suse-cvrf
больше 8 лет назад

Security update for curl

EPSS

Процентиль: 67%
0.00546
Низкий

6.5 Medium

CVSS3

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-120
CWE-125