AVG-694 log
Package | curl |
Status | Fixed |
Severity | Critical |
Type | multiple issues |
Affected | 7.59.0-2 |
Fixed | 7.60.0-1 |
Current |
8.11.1-3 [core-testing] 8.11.1-2 [core] |
Ticket | None |
Created | Wed May 16 09:09:32 2018 |
Issue | Severity | Remote | Type | Description |
---|---|---|---|---|
CVE-2018-1000301 | Medium | Yes | Denial of service | curl >= 7.20.0 and < 7.60.0 can be tricked into reading data beyond the end of a heap based buffer used to store downloaded content. When servers send RTSP... |
CVE-2018-1000300 | Critical | Yes | Arbitrary code execution | curl >= 7.54.1 and < 7.60.0 might overflow a heap based memory buffer when closing down an FTP connection with very long server command replies. When doing... |
Date | Advisory | Package | Type |
---|---|---|---|
17 May 2018 | ASA-201805-13 | curl | multiple issues |