Out-of-bounds read in cURL - CVE-2017-1000101
Published: August 15, 2017
Vulnerability identifier: #VU7885
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-1000101
CWE-ID: CWE-125
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to redirect website visitors to external websites.
The weakness exists due to out-of-bounds read. A local user can supply a URL containing specially crafted numerical range characters to trigger a heap read error and obtain potentially sensitive information from system memory
Successful exploitation of the vulnerability results in information disclosure.
The weakness exists due to out-of-bounds read. A local user can supply a URL containing specially crafted numerical range characters to trigger a heap read error and obtain potentially sensitive information from system memory
Successful exploitation of the vulnerability results in information disclosure.
Affected software
cURL
Debian Linux
Arch Linux
Amazon Linux AMI
Gentoo Linux
Slackware Linux
Fedora
curl (Alpine package)
curl
Debian Linux
Arch Linux
Amazon Linux AMI
Gentoo Linux
Slackware Linux
Fedora
curl (Alpine package)
curl
How to mitigate CVE-2017-1000101
Update to version 7.55.0.
curl (Alpine package) - update to 7.55.0-r0
curl - addressed in versions 7.51.0-9.fc25, 7.53.1-10.fc26
curl - addressed in versions 7.51.0-9.fc25, 7.53.1-10.fc26