Arbitrary code execution in libcurl - CVE-2016-7167
Published: September 23, 2016
Vulnerability identifier: #VU655
CSH Severity: High
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2016-7167
CWE-ID: CWE-191
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability exposes a remote user's possibility to cause arbitrary code execution on the target system.
The weakness exists due to integer overflow. Using of specially crafted length parameter value to certain libcurl functions allows attackers to obtain potentially sensitive information and execute arbitrary code.
Successful exploitation of the vulnerability may result in arbitrary code execution on the vulnerable system.
The weakness exists due to integer overflow. Using of specially crafted length parameter value to certain libcurl functions allows attackers to obtain potentially sensitive information and execute arbitrary code.
Successful exploitation of the vulnerability may result in arbitrary code execution on the vulnerable system.
Affected software
libcurl
Arch Linux
SUSE Linux
Slackware Linux
Fedora
Opensuse
Modular Switchgear Monitoring (MSM)
curl (Alpine package)
curl
Dell EMC Unisphere Central
Arch Linux
SUSE Linux
Slackware Linux
Fedora
Opensuse
Modular Switchgear Monitoring (MSM)
curl (Alpine package)
curl
Dell EMC Unisphere Central
How to mitigate CVE-2016-7167
Update to 7.50.3.
curl (Alpine package) - update to 7.49.1-r3
Dell EMC Unisphere Central - update to 4.0.8.23220
curl - addressed in versions 7.43.0-10.fc23, 7.47.1-8.fc24, 7.50.3-1.fc25
Dell EMC Unisphere Central - update to 4.0.8.23220
curl - addressed in versions 7.43.0-10.fc23, 7.47.1-8.fc24, 7.50.3-1.fc25
External References
Related Security Bulletins
- Arch Linux update for curl
- Arch Linux update for lib32-curl
- Arch Linux update for curl
- Arch Linux update for lib32-curl
- Slackware Linux update for curl
- OpenSUSE Linux update for curl
- SUSE Linux update for curl
- SUSE Linux update for curl
- Arbitrary code execution in curl (Alpine package)
- Multiple vulnerabilities in Hitachi Energy MSM Product
- Multiple vulnerabilities in Dell EMC Unisphere Central
- Fedora 23 update for curl
- Fedora 25 update for curl
- Fedora 24 update for curl