7.8
CVSSv3

CVE-2019-5436

Published: 28/05/2019 Updated: 07/11/2023
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 410
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 up to and including 7.64.1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

haxx libcurl

opensuse leap 42.3

opensuse leap 15.0

opensuse leap 15.1

fedoraproject fedora 29

debian debian linux 9.0

debian debian linux 10.0

f5 traffix signaling delivery controller

netapp steelstore cloud integrated storage -

netapp solidfire -

netapp hci management node -

oracle enterprise manager ops center 12.3.3

oracle enterprise manager ops center 12.4.0

oracle mysql server

oracle oss support tools 20.0

Vendor Advisories

Debian Bug report logs - #929352 curl: CVE-2019-5435: Integer overflows in curl_url_set Package: src:curl; Maintainer for src:curl is Alessandro Ghedini <ghedo@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 22 May 2019 07:45:02 UTC Severity: important Tags: security, upstream Found in ...
Debian Bug report logs - #929351 curl: CVE-2019-5436: TFTP receive buffer overflow Package: src:curl; Maintainer for src:curl is Alessandro Ghedini <ghedo@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 22 May 2019 07:42:01 UTC Severity: important Tags: security, upstream Found in versi ...
curl could be made to crash if it received a specially crafted data ...
Several security issues were fixed in curl ...
Multiple vulnerabilities were discovered in cURL, an URL transfer library CVE-2019-5436 A heap buffer overflow in the TFTP receiving code was discovered, which could allow DoS or arbitrary code execution This only affects the oldstable distribution (stretch) CVE-2019-5481 Thomas Vegas discovered a double-free in the FTP-KRB code ...
Synopsis Moderate: curl security update Type/Severity Security Advisory: Moderate Topic An update for curl is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) base score, which gi ...
Synopsis Low: curl security and bug fix update Type/Severity Security Advisory: Low Topic An update for curl is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a security impact of Low A Common Vulnerability Scoring System (CVSS) base score, which gives ...
Synopsis Low: curl security update Type/Severity Security Advisory: Low Topic An update for curl is now available for Red Hat Enterprise Linux 77 Extended Update SupportRed Hat Product Security has rated this update as having a security impact of Low A Common Vulnerability Scoring System (CVSS) base scor ...
Synopsis Important: Container-native Virtualization security, bug fix, and enhancement update Type/Severity Security Advisory: Important Topic Red Hat OpenShift Virtualization release 240 is now available with updates to packages and images that fix several bugs and add enhancementsRed Hat Product Securi ...
Synopsis Moderate: OpenShift Container Platform 461 image security update Type/Severity Security Advisory: Moderate Topic An update is now available for Red Hat OpenShift Container Platform 46Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability S ...
An integer overflow in curl's URL API results in a buffer overflow in libcurl (CVE-2019-5435) A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl (CVE-2019-5436) ...
A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl (CVE-2019-5436) An integer overflow in curl's URL API results in a buffer overflow in libcurl (CVE-2019-5435) ...
libcurl before 7650 contains a heap buffer overflow in the function (tftp_receive_packet()) that recevives data from a TFTP server It calls recvfrom() with the default size for the buffer rather than with the size that was used to allocate it Thus, the content that might overwrite the heap memory is entirely controlled by the server The flaw e ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> oss-sec mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> [SECURITY ADVISORY] curl: TFTP small blocksize heap buffer overflow <!--X-Subject-Header-End--> <!--X-Head-of-Message--> Fro ...