Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:19620
HistoryMay 16, 2019 - 3:21 a.m.

Buffer Overflow

2019-05-1603:21:39
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17

EPSS

0.012

Percentile

85.1%

curl is vulnerable to buffer overflow vulnerability. The vulnerability occurs when doing a large floating point output in libcurlโ€™s implementation of the printf() functions. The application accepts input format strings without doing a necessary input filtering. A remote attacker could send a format string from the outside causing a memory corruption.

References