Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6337
HistoryMay 21, 2018 - 8:51 a.m.

Information Disclosure

2018-05-2108:51:58
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.001 Low

EPSS

Percentile

43.3%

libcurl.so is vulnerable to information disclosures. When running with the --write-out command, the application skips the end of the string zero byte if the string ends with % or \\\\ , causing the application to read out of the buffer and disclose sensitive information.