CVE-2017-8816
29.11.2017, 18:29
The NTLM authentication feature in curl and libcurl before 7.57.0 on 32-bit platforms allows attackers to cause a denial of service (integer overflow and resultant buffer overflow, and application crash) or possibly have unspecified other impact via vectors involving long user and password fields.Enginsight
| Vendor | Product | Version |
|---|---|---|
| haxx | curl | 7.36.0 < 𝑥 ≤ 7.56.1 |
| haxx | libcurl | 7.36.0 ≤ 𝑥 ≤ 7.56.1 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References