Out-of-bounds read in cURL - CVE-2017-1000101

 

Out-of-bounds read in cURL - CVE-2017-1000101

Published: August 15, 2017


Vulnerability identifier: #VU7885
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-1000101
CWE-ID: CWE-125
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to redirect website visitors to external websites.

The weakness exists due to out-of-bounds read. A local user can supply a URL containing specially crafted numerical range characters to trigger a heap read error and obtain potentially sensitive information from system memory

Successful exploitation of the vulnerability results in information disclosure.

Affected software

cURL
Debian Linux
Arch Linux
Amazon Linux AMI
Gentoo Linux
Slackware Linux
Fedora
curl (Alpine package)
curl

How to mitigate CVE-2017-1000101

Update to version 7.55.0.

curl (Alpine package) - update to 7.55.0-r0
curl - addressed in versions 7.51.0-9.fc25, 7.53.1-10.fc26

External References

Related Security Bulletins