Логотип exploitDog
bind:CVE-2016-8622
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2016-8622

Количество 11

Количество 11

ubuntu логотип

CVE-2016-8622

почти 7 лет назад

The URL percent-encoding decode function in libcurl before 7.51.0 is called `curl_easy_unescape`. Internally, even if this function would be made to allocate a unscape destination buffer larger than 2GB, it would return that new length in a signed 32 bit integer variable, thus the length would get either just truncated or both truncated and turned negative. That could then lead to libcurl writing outside of its heap based buffer.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2016-8622

больше 8 лет назад

The URL percent-encoding decode function in libcurl before 7.51.0 is called `curl_easy_unescape`. Internally, even if this function would be made to allocate a unscape destination buffer larger than 2GB, it would return that new length in a signed 32 bit integer variable, thus the length would get either just truncated or both truncated and turned negative. That could then lead to libcurl writing outside of its heap based buffer.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2016-8622

почти 7 лет назад

The URL percent-encoding decode function in libcurl before 7.51.0 is called `curl_easy_unescape`. Internally, even if this function would be made to allocate a unscape destination buffer larger than 2GB, it would return that new length in a signed 32 bit integer variable, thus the length would get either just truncated or both truncated and turned negative. That could then lead to libcurl writing outside of its heap based buffer.

CVSS3: 3.7
EPSS: Низкий
debian логотип

CVE-2016-8622

почти 7 лет назад

The URL percent-encoding decode function in libcurl before 7.51.0 is c ...

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-xfmx-53v5-938g

около 3 лет назад

The URL percent-encoding decode function in libcurl before 7.51.0 is called `curl_easy_unescape`. Internally, even if this function would be made to allocate a unscape destination buffer larger than 2GB, it would return that new length in a signed 32 bit integer variable, thus the length would get either just truncated or both truncated and turned negative. That could then lead to libcurl writing outside of its heap based buffer.

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:2768-1

больше 8 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:2714-1

больше 8 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:2699-1

больше 8 лет назад

Security update for curl

EPSS: Низкий
oracle-oval логотип

ELSA-2019-4652

около 6 лет назад

ELSA-2019-4652: curl security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2699-1

больше 7 лет назад

Security update for SLES 12 Docker image

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2700-1

больше 7 лет назад

Security update for SLES 12-SP1 Docker image

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2016-8622

The URL percent-encoding decode function in libcurl before 7.51.0 is called `curl_easy_unescape`. Internally, even if this function would be made to allocate a unscape destination buffer larger than 2GB, it would return that new length in a signed 32 bit integer variable, thus the length would get either just truncated or both truncated and turned negative. That could then lead to libcurl writing outside of its heap based buffer.

CVSS3: 3.7
2%
Низкий
почти 7 лет назад
redhat логотип
CVE-2016-8622

The URL percent-encoding decode function in libcurl before 7.51.0 is called `curl_easy_unescape`. Internally, even if this function would be made to allocate a unscape destination buffer larger than 2GB, it would return that new length in a signed 32 bit integer variable, thus the length would get either just truncated or both truncated and turned negative. That could then lead to libcurl writing outside of its heap based buffer.

CVSS3: 3.7
2%
Низкий
больше 8 лет назад
nvd логотип
CVE-2016-8622

The URL percent-encoding decode function in libcurl before 7.51.0 is called `curl_easy_unescape`. Internally, even if this function would be made to allocate a unscape destination buffer larger than 2GB, it would return that new length in a signed 32 bit integer variable, thus the length would get either just truncated or both truncated and turned negative. That could then lead to libcurl writing outside of its heap based buffer.

CVSS3: 3.7
2%
Низкий
почти 7 лет назад
debian логотип
CVE-2016-8622

The URL percent-encoding decode function in libcurl before 7.51.0 is c ...

CVSS3: 3.7
2%
Низкий
почти 7 лет назад
github логотип
GHSA-xfmx-53v5-938g

The URL percent-encoding decode function in libcurl before 7.51.0 is called `curl_easy_unescape`. Internally, even if this function would be made to allocate a unscape destination buffer larger than 2GB, it would return that new length in a signed 32 bit integer variable, thus the length would get either just truncated or both truncated and turned negative. That could then lead to libcurl writing outside of its heap based buffer.

CVSS3: 9.8
2%
Низкий
около 3 лет назад
suse-cvrf логотип
openSUSE-SU-2016:2768-1

Security update for curl

больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2016:2714-1

Security update for curl

больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2016:2699-1

Security update for curl

больше 8 лет назад
oracle-oval логотип
ELSA-2019-4652

ELSA-2019-4652: curl security update (IMPORTANT)

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2017:2699-1

Security update for SLES 12 Docker image

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2017:2700-1

Security update for SLES 12-SP1 Docker image

больше 7 лет назад

Уязвимостей на страницу