7.5
CVSSv2

CVE-2018-0500

Published: 11/07/2018 Updated: 24/08/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Curl_smtp_escape_eob in lib/smtp.c in curl 7.54.1 to and including curl 7.60.0 has a heap-based buffer overflow that might be exploitable by an attacker who can control the data that curl transmits over SMTP with certain settings (i.e., use of a nonstandard --limit-rate argument or CURLOPT_BUFFERSIZE value).

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

haxx curl

canonical ubuntu linux 18.04

canonical ubuntu linux 17.10

Vendor Advisories

Synopsis Important: Red Hat JBoss Core Services Apache HTTP Server 2429 security update Type/Severity Security Advisory: Important Topic Red Hat JBoss Core Services Pack Apache Server 2429 packages for Microsoft Windows and Oracle Solaris are now availableRed Hat Product Security has rated this release ...
Debian Bug report logs - #903546 curl: CVE-2018-0500: SMTP send heap buffer overflow Package: src:curl; Maintainer for src:curl is Alessandro Ghedini <ghedo@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 11 Jul 2018 08:15:01 UTC Severity: grave Tags: security, upstream Found in version ...
curl could be made to crash or run programs if it received specially crafted network traffic ...
A heap-based buffer overflow has been found in the Curl_smtp_escape_eob() function of curl An attacker could exploit this by convincing a user to use curl to upload data over SMTP with a reduced buffer to cause a crash or corrupt memory(CVE-2018-0500) ...
set_file_metadata in xattrc in GNU Wget stores a file's origin URL in the userxdgoriginurl metadata attribute of the extended attributes of the downloaded file, which allows local users to obtain sensitive information (eg, credentials contained in the URL) by reading this attribute, as demonstrated by getfattr This also applies to Referer in ...
A heap-based buffer overflow has been found in the Curl_smtp_escape_eob() function of curl An attacker could exploit this by convincing a user to use curl to upload data over SMTP with a reduced buffer to cause a crash or corrupt memory ...
It has been discovered that curl before 7610 might overflow a heap based memory buffer when sending data over SMTP and using a reduced read buffer When sending data over SMTP, curl allocates a separate "scratch area" on the heap to be able to escape the uploaded data properly if the uploaded data contains data that requires it The size of this ...

Github Repositories

This workshop was originally created by githubcom/clemenko/dc18_supply_chain Secure, Automated Software Supply Chain In this lab you will integrate Mirantis Cloud Native Platform in to your development pipeline You will build your application from a Dockerfile and push your image to the Mirantis Secure Registry (MSR) MSR will scan your image for vulnerabilities so th

Secure, Automated Software Supply Chain - Dockercon 2018 In this lab you will integrate Docker Enterpise Edition Advanced in to your development pipeline You will build your application from a Dockerfile and push your image to the Docker Trusted Registry (DTR) DTR will scan your image for vulnerabilities so they can be fixed before your application is deployed This helps you