|
|
| |
|
| |
curl: arbitrary code execution
| Package(s): | curl |
CVE #(s): | |
| Created: | March 9, 2010 |
Updated: | March 15, 2010 |
| Description: |
From the Red
Hat bugzilla:
A stack based buffer overflow flaw was found in the way libcurl
used to uncompress zlib compressed data. If an application,
using libcurl, was downloading compressed content over HTTP and
asked libcurl to automatically uncompress data, it might lead
to denial of service (application crash) or, potentially, to
arbitrary code execution with the privileges of that application. |
| Alerts: |
|
( Log in to post comments)
|
|
|