Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 1 672

Количество 1 672

redhat логотип

CVE-2019-5436

около 7 лет назад

A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.

CVSS3: 7
EPSS: Средний
nvd логотип

CVE-2019-5436

около 7 лет назад

A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.

CVSS3: 7.8
EPSS: Средний
debian логотип

CVE-2019-5436

около 7 лет назад

A heap buffer overflow in the TFTP receiving code allows for DoS or ar ...

CVSS3: 7.8
EPSS: Средний
github логотип

GHSA-rh8g-j53h-g8xf

около 4 лет назад

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-79v3-h2vf-vcg6

около 4 лет назад

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
EPSS: Низкий
ubuntu логотип

CVE-2022-27778

около 4 лет назад

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2022-27778

около 4 лет назад

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2022-27778

около 4 лет назад

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2022-27778

около 4 лет назад

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might ...

CVSS3: 8.1
EPSS: Низкий
ubuntu логотип

CVE-2019-5443

около 7 лет назад

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2019-5443

около 7 лет назад

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 8.4
EPSS: Низкий
nvd логотип

CVE-2019-5443

около 7 лет назад

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2019-5443

около 7 лет назад

A non-privileged user or program can put code and a config file in a k ...

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1762-1

около 5 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:0808-1

около 5 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2062-1

больше 5 лет назад

Security update for krb5

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2037-1

больше 5 лет назад

Security update for krb5

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1763-1

около 5 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1762-1

около 5 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:14760-1

около 5 лет назад

Security update for curl

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2019-5436

A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.

CVSS3: 7
50%
Средний
около 7 лет назад
nvd логотип
CVE-2019-5436

A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.

CVSS3: 7.8
50%
Средний
около 7 лет назад
debian логотип
CVE-2019-5436

A heap buffer overflow in the TFTP receiving code allows for DoS or ar ...

CVSS3: 7.8
50%
Средний
около 7 лет назад
github логотип
GHSA-rh8g-j53h-g8xf

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.

CVSS3: 8.1
4%
Низкий
около 4 лет назад
github логотип
GHSA-79v3-h2vf-vcg6

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
1%
Низкий
около 4 лет назад
ubuntu логотип
CVE-2022-27778

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.

CVSS3: 8.1
4%
Низкий
около 4 лет назад
redhat логотип
CVE-2022-27778

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.

CVSS3: 8.1
4%
Низкий
около 4 лет назад
nvd логотип
CVE-2022-27778

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.

CVSS3: 8.1
4%
Низкий
около 4 лет назад
debian логотип
CVE-2022-27778

A use of incorrectly resolved name vulnerability fixed in 7.83.1 might ...

CVSS3: 8.1
4%
Низкий
около 4 лет назад
ubuntu логотип
CVE-2019-5443

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
1%
Низкий
около 7 лет назад
redhat логотип
CVE-2019-5443

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 8.4
1%
Низкий
около 7 лет назад
nvd логотип
CVE-2019-5443

A non-privileged user or program can put code and a config file in a known non-privileged path (under C:/usr/local/) that will make curl <= 7.65.1 automatically run the code (as an openssl "engine") on invocation. If that curl is invoked by a privileged user it can do anything it wants.

CVSS3: 7.8
1%
Низкий
около 7 лет назад
debian логотип
CVE-2019-5443

A non-privileged user or program can put code and a config file in a k ...

CVSS3: 7.8
1%
Низкий
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1762-1

Security update for curl

4%
Низкий
около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2021:0808-1

Security update for curl

4%
Низкий
около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2062-1

Security update for krb5

4%
Низкий
больше 5 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2037-1

Security update for krb5

4%
Низкий
больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1763-1

Security update for curl

4%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1762-1

Security update for curl

4%
Низкий
около 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:14760-1

Security update for curl

4%
Низкий
около 5 лет назад

Уязвимостей на страницу