Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 12

Количество 12

ubuntu логотип

CVE-2018-14618

почти 8 лет назад

curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multiplies the length of the password by two (SUM) to figure out how large temporary storage area to allocate from the heap. The length value is then subsequently used to iterate over the password and generate output into the allocated storage buffer. On systems with a 32 bit size_t, the math to calculate SUM triggers an integer overflow when the password length exceeds 2GB (2^31 bytes). This integer overflow usually causes a very small buffer to actually get allocated instead of the intended very huge one, making the use of that buffer end up in a heap buffer overflow. (This bug is almost identical to CVE-2017-8816.)

CVSS3: 7.5
EPSS: Средний
redhat логотип

CVE-2018-14618

почти 8 лет назад

curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multiplies the length of the password by two (SUM) to figure out how large temporary storage area to allocate from the heap. The length value is then subsequently used to iterate over the password and generate output into the allocated storage buffer. On systems with a 32 bit size_t, the math to calculate SUM triggers an integer overflow when the password length exceeds 2GB (2^31 bytes). This integer overflow usually causes a very small buffer to actually get allocated instead of the intended very huge one, making the use of that buffer end up in a heap buffer overflow. (This bug is almost identical to CVE-2017-8816.)

CVSS3: 7.5
EPSS: Средний
nvd логотип

CVE-2018-14618

почти 8 лет назад

curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multiplies the length of the password by two (SUM) to figure out how large temporary storage area to allocate from the heap. The length value is then subsequently used to iterate over the password and generate output into the allocated storage buffer. On systems with a 32 bit size_t, the math to calculate SUM triggers an integer overflow when the password length exceeds 2GB (2^31 bytes). This integer overflow usually causes a very small buffer to actually get allocated instead of the intended very huge one, making the use of that buffer end up in a heap buffer overflow. (This bug is almost identical to CVE-2017-8816.)

CVSS3: 7.5
EPSS: Средний
debian логотип

CVE-2018-14618

почти 8 лет назад

curl before version 7.61.1 is vulnerable to a buffer overrun in the NT ...

CVSS3: 7.5
EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2018:2736-1

почти 8 лет назад

Security update for curl

EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2018:2731-1

почти 8 лет назад

Security update for curl

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:2717-1

почти 8 лет назад

Security update for curl

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:2715-1

почти 8 лет назад

Security update for curl

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2018:2714-1

почти 8 лет назад

Security update for curl

EPSS: Средний
github логотип

GHSA-4mp9-8964-jxmg

около 4 лет назад

curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multiplies the length of the password by two (SUM) to figure out how large temporary storage area to allocate from the heap. The length value is then subsequently used to iterate over the password and generate output into the allocated storage buffer. On systems with a 32 bit size_t, the math to calculate SUM triggers an integer overflow when the password length exceeds 2GB (2^31 bytes). This integer overflow usually causes a very small buffer to actually get allocated instead of the intended very huge one, making the use of that buffer end up in a heap buffer overflow. (This bug is almost identical to CVE-2017-8816.)

CVSS3: 9.8
EPSS: Средний
oracle-oval логотип

ELSA-2019-1880

около 7 лет назад

ELSA-2019-1880: curl security and bug fix update (LOW)

EPSS: Средний
fstec логотип

BDU:2019-00416

около 8 лет назад

Уязвимость функции Curl_ntlm_core_mk_nt_hash программного средства для взаимодействия с серверами curl, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS3: 9.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-14618

curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multiplies the length of the password by two (SUM) to figure out how large temporary storage area to allocate from the heap. The length value is then subsequently used to iterate over the password and generate output into the allocated storage buffer. On systems with a 32 bit size_t, the math to calculate SUM triggers an integer overflow when the password length exceeds 2GB (2^31 bytes). This integer overflow usually causes a very small buffer to actually get allocated instead of the intended very huge one, making the use of that buffer end up in a heap buffer overflow. (This bug is almost identical to CVE-2017-8816.)

CVSS3: 7.5
11%
Средний
почти 8 лет назад
redhat логотип
CVE-2018-14618

curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multiplies the length of the password by two (SUM) to figure out how large temporary storage area to allocate from the heap. The length value is then subsequently used to iterate over the password and generate output into the allocated storage buffer. On systems with a 32 bit size_t, the math to calculate SUM triggers an integer overflow when the password length exceeds 2GB (2^31 bytes). This integer overflow usually causes a very small buffer to actually get allocated instead of the intended very huge one, making the use of that buffer end up in a heap buffer overflow. (This bug is almost identical to CVE-2017-8816.)

CVSS3: 7.5
11%
Средний
почти 8 лет назад
nvd логотип
CVE-2018-14618

curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multiplies the length of the password by two (SUM) to figure out how large temporary storage area to allocate from the heap. The length value is then subsequently used to iterate over the password and generate output into the allocated storage buffer. On systems with a 32 bit size_t, the math to calculate SUM triggers an integer overflow when the password length exceeds 2GB (2^31 bytes). This integer overflow usually causes a very small buffer to actually get allocated instead of the intended very huge one, making the use of that buffer end up in a heap buffer overflow. (This bug is almost identical to CVE-2017-8816.)

CVSS3: 7.5
11%
Средний
почти 8 лет назад
debian логотип
CVE-2018-14618

curl before version 7.61.1 is vulnerable to a buffer overrun in the NT ...

CVSS3: 7.5
11%
Средний
почти 8 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2736-1

Security update for curl

11%
Средний
почти 8 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2731-1

Security update for curl

11%
Средний
почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2717-1

Security update for curl

11%
Средний
почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2715-1

Security update for curl

11%
Средний
почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2714-1

Security update for curl

11%
Средний
почти 8 лет назад
github логотип
GHSA-4mp9-8964-jxmg

curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multiplies the length of the password by two (SUM) to figure out how large temporary storage area to allocate from the heap. The length value is then subsequently used to iterate over the password and generate output into the allocated storage buffer. On systems with a 32 bit size_t, the math to calculate SUM triggers an integer overflow when the password length exceeds 2GB (2^31 bytes). This integer overflow usually causes a very small buffer to actually get allocated instead of the intended very huge one, making the use of that buffer end up in a heap buffer overflow. (This bug is almost identical to CVE-2017-8816.)

CVSS3: 9.8
11%
Средний
около 4 лет назад
oracle-oval логотип
ELSA-2019-1880

ELSA-2019-1880: curl security and bug fix update (LOW)

11%
Средний
около 7 лет назад
fstec логотип
BDU:2019-00416

Уязвимость функции Curl_ntlm_core_mk_nt_hash программного средства для взаимодействия с серверами curl, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

CVSS3: 9.8
11%
Средний
около 8 лет назад

Уязвимостей на страницу