Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7152
HistoryJul 25, 2018 - 5:49 a.m.

Denial Of Service (DoS)

2018-07-2505:49:29
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.093 Low

EPSS

Percentile

94.7%

libcurl.so is susceptible to denial of service(DoS). The vulnerability exists because the curl_easy_unescape function in lib/escape.c only terminates string parsing when a zero byte is used, leading to heap corruption that can crash the application or cause arbitrary code to be executed.

CPENameOperatorVersion
libcurl.sole4.7.0