[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253650

 
 

909

 
 

197367

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2014-0015
cURL and libcurl 7.10.6 through 7.34.0, when more than one authentication method is enabled, re-uses NTLM connections, which might allow context-dependent attackers to authenticate as other users via a request.

CVE-2013-2174
Heap-based buffer overflow in the curl_easy_unescape function in lib/escape.c in cURL and libcurl 7.7 through 7.30.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string ending in a "%" (percent) character.

*OVAL
oval:org.secpod.oval:def:106388
CPE    87
cpe:/a:haxx:curl:7.21.0
cpe:/a:haxx:curl:7.21.3
cpe:/a:haxx:curl:7.23.1
cpe:/a:haxx:curl:7.21.4
...

© SecPod Technologies