EPSS
Percentile
81.3%
Curl versions 7.14.1 through 7.61.1 are vulnerable to a heap-based buffer over-read in the tool_msgs.c:voutf() function that may result in information exposure and denial of service.
bugzilla.redhat.com/show_bug.cgi?id=1644124
www.cve.org/CVERecord?id=CVE-2018-16842 https://nvd.nist.gov/vuln/detail/CVE-2018-16842 https://curl.haxx.se/docs/CVE-2018-16842.html