Search: "curl"

302 CVEs found

The fix_hostname function in cURL and libcurl 7.37.0 through 7.41.0 does not properly calculate an index, which allows remote attackers to cause a denial of service (out-of-bounds read or write and cr...

Published: 2015-04-24
Products: 19
Vendors:
canonical oracle debian haxx

The sanitize_cookie_path function in cURL and libcurl 7.31.0 through 7.41.0 does not properly calculate an index, which allows remote attackers to cause a denial of service (out-of-bounds write and cr...

Published: 2015-04-24
Products: 41
Vendors:
haxx apple oracle canonical hp +3 more
CVE-2015-3148
5.0 MEDIUM

cURL and libcurl 7.10.6 through 7.41.0 do not properly re-use authenticated Negotiate connections, which allows remote attackers to connect as other users via a request.

Published: 2015-04-24
Products: 159
Vendors:
haxx apple canonical hp fedoraproject +2 more
CVE-2015-3153
5.0 MEDIUM

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information ...

Published: 2015-05-01
Products: 12
Vendors:
oracle haxx canonical apple debian
CVE-2015-3236
5.0 MEDIUM

cURL and libcurl 7.40.0 through 7.42.1 send the HTTP Basic authentication credentials for a previous connection when reusing a reset (curl_easy_reset) connection handle to send a request to the same h...

Published: 2015-06-22
Products: 8
Vendors:
haxx
CVE-2015-3237
6.4 MEDIUM

The smb_request_state function in cURL and libcurl 7.40.0 through 7.42.1 allows remote SMB servers to obtain sensitive information from memory or cause a denial of service (out-of-bounds read and cras...

Published: 2015-06-22
Products: 14
Vendors:
haxx hp oracle
CVE-2016-0754
5.3 MEDIUM

cURL before 7.47.0 on Windows allows attackers to write to arbitrary files in the current working directory on a different drive via a colon in a remote file name.

Published: 2016-01-29
Products: 2
Vendors:
haxx microsoft
CVE-2016-3739
5.3 MEDIUM

The (1) mbed_connect_step1 function in lib/vtls/mbedtls.c and (2) polarssl_connect_step1 function in lib/vtls/polarssl.c in cURL and libcurl before 7.49.0, when using SSLv3 or making a TLS connection ...

Published: 2016-05-20
Products: 37
Vendors:
haxx

Multiple untrusted search path vulnerabilities in cURL and libcurl before 7.49.1, when built with SSPI or telnet is enabled, allow local users to execute arbitrary code and conduct DLL hijacking attac...

Published: 2016-06-24
Products: 1
Vendors:
haxx

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

Published: 2016-08-10
Products: 3
Vendors:
haxx opensuse debian

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by lever...

Published: 2016-08-10
Products: 3
Vendors:
debian opensuse haxx
CVE-2016-7134
9.8 CRITICAL

ext/curl/interface.c in PHP 7.x before 7.0.10 does not work around a libcurl integer overflow, which allows remote attackers to cause a denial of service (allocation error and heap-based buffer overfl...

Published: 2016-09-12
Products: 10
Vendors:
php

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of...

Published: 2016-10-03
Products: 2
Vendors:
haxx opensuse
CVE-2016-7167
9.8 CRITICAL

Multiple integer overflows in the (1) curl_escape, (2) curl_easy_escape, (3) curl_unescape, and (4) curl_easy_unescape functions in libcurl before 7.50.3 allow attackers to have unspecified impact via...

Published: 2016-10-07
Products: 4
Vendors:
fedoraproject haxx
CVE-2016-9852
5.3 MEDIUM

An issue was discovered in phpMyAdmin. By calling some scripts that are part of phpMyAdmin in an unexpected way, it is possible to trigger phpMyAdmin to display a PHP error message which contains the ...

Published: 2016-12-11
Products: 33
Vendors:
phpmyadmin
CVE-2016-9137
9.8 CRITICAL

Use-after-free vulnerability in the CURLFile implementation in ext/curl/curl_file.c in PHP before 5.6.27 and 7.x before 7.0.12 allows remote attackers to cause a denial of service or possibly have uns...

Published: 2017-01-04
Products: 13
Vendors:
php

MediaWiki before 1.23.12, 1.24.x before 1.24.5, 1.25.x before 1.25.4, and 1.26.x before 1.26.1 do not properly sanitize parameters when calling the cURL library, which allows remote attackers to read ...

Published: 2017-03-23
Products: 11
Vendors:
mediawiki

The ourWriteOut function in tool_writeout.c in curl 7.53.1 might allow physically proximate attackers to obtain sensitive information from process memory in opportunistic circumstances by reading a wo...

Published: 2017-04-03
Products: 1
Vendors:
haxx

An issue was discovered on Mimosa Client Radios before 2.2.4 and Mimosa Backhaul Radios before 2.2.4. On the backend of the device's web interface, there are some diagnostic tests available that are n...

Published: 2017-05-21
Products: 2
Vendors:
mimosa
CVE-2017-9502
5.3 MEDIUM

In curl before 7.54.1 on Windows and DOS, libcurl's default protocol function, which is the logic that allows an application to set which protocol libcurl should attempt to use when given a URL withou...

Published: 2017-06-14
Products: 1
Vendors:
haxx