|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Gentoo Local Security Checks >> [GLSA-200512-09] cURL: Off-by-one errors in URL handling Vulnerability Assessment Details
|
[GLSA-200512-09] cURL: Off-by-one errors in URL handling |
||
cURL: Off-by-one errors in URL handling Detailed Explanation for this Vulnerability Assessment The remote host is affected by the vulnerability described in GLSA-200512-09 (cURL: Off-by-one errors in URL handling) Stefan Esser from the Hardened-PHP Project has reported a vulnerability in cURL that permits for a local buffer overflow when cURL attempts to parse specially crafted URLs. The URL can be specially crafted in one of two ways: the URL could be malformed in a way that prevents a terminating null byte from being added to either a hostname or path buffer or the URL could contain a "?" separator in the hostname portion, which causes a "/" to be prepended to the resulting string. Impact A possible hacker capable of getting cURL to parse a maliciously crafted URL could cause a denial of service or execute arbitrary code with the rights of the user making the call to cURL. A possible hacker could also escape open_basedir or safe_mode pseudo-restrictions when exploiting this problem from within a PHP program when PHP is compiled with libcurl. Workaround There is no known workaround at this time. References: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4077 http://www.hardened-php.net/advisory_242005.109.html Solution: All cURL users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=net-misc/curl-7.15.1" Network Security Threat Level: Low Networks Security ID: Vulnerability Assessment Copyright: (C) 2005 Michel Arboi |
||
Cables, Connectors |
Samsung Galaxy Tab A9 (X110) 64GB 4GB RAM International Version (New)
$129.99
Samsung Galaxy Tab A8 10.5" 64GB Gray WiFi Tab SM-X200NZAZXAR 2022 Model Bundle
$130.00
Samsung Galaxy Tab A 8" SM-T387V 32GB Verizon Tablet (No SIM Tray) Grade B
$31.99
NEW Samsung Galaxy Tab A8 10.5-in 32GB Tablet - Gray SM-X200
$129.98
Samsung XE310XBA Chromebook 4 11.6" w/Celeron 1.1GHz/4GB/16GB SSD - Used
$38.00
Samsung Chromebook 2 503C XE503C12-K01US (Octa 5420 1.9GHz - 4GB RAM - 16GB SSD)
$17.92
Samsung Chromebook Computer 11.6" Celeron 2GB 16GB SSD WiFi Webcam Bluetooth
$44.99
Samsung Galaxy Tab A9+ 11.0" 64GB Gray Wi-Fi Tablet Bundle SM-X210NZAYXAR 2023
$170.00
Samsung Official Book Cover Keyboard Slim for Galaxy Tab S9 / S9 5G - Black
$87.95
Samsung Galaxy Tab S9 FE SM-X518U 128GB, Wi-Fi+5G (Carrier Unlocked) 10.9"- Gray
$409.98
|
||
No Discussions have been posted on this vulnerability. |