CVE-2017-8816
29.11.2017, 18:29
The NTLM authentication feature in curl and libcurl before 7.57.0 on 32-bit platforms allows attackers to cause a denial of service (integer overflow and resultant buffer overflow, and application crash) or possibly have unspecified other impact via vectors involving long user and password fields.Enginsight
Vendor | Product | Version |
---|---|---|
haxx | curl | 7.36.0 < 𝑥 ≤ 7.56.1 |
haxx | libcurl | 7.36.0 ≤ 𝑥 ≤ 7.56.1 |
debian | debian_linux | 8.0 |
debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References