Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-8818

Опубликовано: 29 нояб. 2017
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

curl and libcurl before 7.57.0 on 32-bit platforms allow attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact because too little memory is allocated for interfacing to an SSL library.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:haxx:curl:7.56.0:*:*:*:*:*:*:*
cpe:2.3:a:haxx:curl:7.56.1:*:*:*:*:*:*:*
cpe:2.3:a:haxx:libcurl:7.56.0:*:*:*:*:*:*:*
cpe:2.3:a:haxx:libcurl:7.56.1:*:*:*:*:*:*:*

EPSS

Процентиль: 68%
0.00559
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 9.8
ubuntu
около 8 лет назад

curl and libcurl before 7.57.0 on 32-bit platforms allow attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact because too little memory is allocated for interfacing to an SSL library.

CVSS3: 7.5
redhat
около 8 лет назад

curl and libcurl before 7.57.0 on 32-bit platforms allow attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact because too little memory is allocated for interfacing to an SSL library.

CVSS3: 9.8
debian
около 8 лет назад

curl and libcurl before 7.57.0 on 32-bit platforms allow attackers to ...

CVSS3: 9.8
github
больше 3 лет назад

curl and libcurl before 7.57.0 on 32-bit platforms allow attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact because too little memory is allocated for interfacing to an SSL library.

EPSS

Процентиль: 68%
0.00559
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-119