First published: Wed Nov 29 2017(Updated: )
curl and libcurl before 7.57.0 on 32-bit platforms allow attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact because too little memory is allocated for interfacing to an SSL library.
Credit: security@debian.org
Affected Software | Affected Version | How to fix |
---|---|---|
Haxx Curl | =7.56.0 | |
Haxx Curl | =7.56.1 | |
Haxx Libcurl | =7.56.0 | |
Haxx Libcurl | =7.56.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-8818 is a vulnerability in curl and libcurl that allows attackers to cause a denial of service or have other unspecified impacts.
CVE-2017-8818 affects 32-bit platforms by allowing attackers to cause a denial of service or possibly have other impacts due to insufficient memory allocation.
CVE-2017-8818 has a severity level of critical with a CVSS score of 9.8.
To fix the CVE-2017-8818 vulnerability, you should update to curl and libcurl version 7.57.0 or later.
You can find more information about CVE-2017-8818 at the following references: [http://security.cucumberlinux.com/security/details.php?id=163](http://security.cucumberlinux.com/security/details.php?id=163), [http://www.securityfocus.com/bid/102014](http://www.securityfocus.com/bid/102014), [http://www.securitytracker.com/id/1039898](http://www.securitytracker.com/id/1039898)