Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:10994
HistoryJan 15, 2019 - 8:55 a.m.

Denial Of Service (DoS)

2019-01-1508:55:13
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.093 Low

EPSS

Percentile

94.7%

libcurl.so is susceptible to denial of service(DoS). The vulnerability exists because the curl_easy_unescape function in lib/escape.c only terminates string parsing when a zero byte is used, leading to heap corruption that can crash the application or cause arbitrary code to be executed.