Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Curl_smtp_escape_eob in lib/smtp.c in curl 7.54.1 to and including curl 7.60.0 has a heap-based buffer overflow that might be exploitable by an attacker who can control the data that curl transmits over SMTP with certain settings (i.e., use of a nonstandard --limit-rate argument or CURLOPT_BUFFERSIZE value).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Haxx curl 缓冲区错误漏洞
Vulnerability Description
Haxx curl是瑞典Haxx公司的一套利用URL语法在命令行下工作的文件传输工具,该工具支持文件上传和下载,并包含一个用于程序开发的libcurl(客户端URL传输库)。 Haxx curl 7.61.0之前版本中的lib/smtp.c文件的‘Curl_smtp_escape_eob’函数存在基于堆的缓冲区溢出漏洞。攻击者可通过控制传递的数据利用该漏洞执行任意代码或造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A