Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37716
HistoryOct 30, 2022 - 1:32 p.m.

Denial Of Service (DoS)

2022-10-3013:32:34
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18
curl
vulnerability
denial of service
post request

EPSS

0.008

Percentile

81.3%

curl is vulnerable to Denial Of Service (DoS). The vulnerability exists because the library erroneously uses the read callback (CURLOPT_READFUNCTION) to ask for data to send, even when the CURLOPT_POSTFIELDS option has been set, allowing an attacker to crash the application through the malicious POST request.