Integer overflow in libcurl - CVE-2018-16839
Published: November 1, 2018 / Updated: November 1, 2018
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to integer overflow in processing the Curl_auth_create_plain_message name and password when handling malicious input. A remote unauthenticated attacker can send specially crafted SASL password data, trigger memory corruption and execute arbitrary code with elevated privileges. The affected function can be invoked using POP3(S), IMAP(S), or SMTP(S).
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.
Affected software
Arch Linux
Gentoo Linux
Amazon Linux AMI
Slackware Linux
Opensuse
Fedora
curl (Alpine package)
curl (Debian package)
curl
Secured Component Verification (SCV)
EMC ECS
Watson Studio on Cloud Pak for Data
Dell PowerProtect Cyber Recovery
IBM Cloud Transformation Advisor
How to mitigate CVE-2018-16839
curl (Debian package) - update to 7.52.1-5+deb9u8
curl (Alpine package) - addressed in versions 7.61.1-r1, 7.62.0-r0
Secured Component Verification (SCV) - update to 1.92.0
EMC ECS - update to 3.5.0.1
IBM Cloud Transformation Advisor - update to 3.10.0
Watson Studio on Cloud Pak for Data - addressed in versions 4.8.7, 5.1.0
curl - addressed in versions 7.59.0-8.fc28, 7.61.1-4.fc29
Dell PowerProtect Cyber Recovery - update to 18.1.1.2-8
External References
Related Security Bulletins
- Multiple vulnerabilities in libcurl
- Slackware Linux update for curl
- Debian update for curl
- Arch Linux update for lib32-curl
- Arch Linux update for lib32-libcurl-compat
- Arch Linux update for lib32-libcurl-gnutls
- OpenSUSE Linux update for curl
- Amazon Linux AMI update for curl
- Gentoo update for cURL
- Integer overflow in curl (Alpine package)
- Multiple vulnerabilities in Dell EMC ECS
- Multiple vulnerabilities in Dell EMC Cyber Recovery
- Multiple vulnerabilities in Dell Secured Component Verification (SCV)
- Multiple vulnerabilities in IBM Cloud Transformation Advisor
- Multiple vulnerabilities in IBM Watson Studio on Cloud Pak for Data
- Fedora 28 update for curl
- Fedora 29 update for curl