Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
gzip integer overflow
Vulnerability Description
When libcurl is asked to perform automatic gzip decompression of content-encoded HTTP responses with the `CURLOPT_ACCEPT_ENCODING` option, **using zlib 1.2.0.3 or older**, an attacker-controlled integer overflow would make libcurl perform a buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
curl 安全漏洞
Vulnerability Description
curl是cURL开源的一款用于从服务器传输数据或向服务器传输数据的工具。 curl 7.10.5至8.11.1版本存在安全漏洞,该漏洞源于在使用zlib 1.2.0.3及之前版本自动解压缩HTTP响应时,攻击者可能利用整数溢出导致缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A