New issue
Advanced search Search tips

Issue 795531 link

Starred by 1 user

Issue metadata

Status: Duplicate
Merged: issue 789479
Owner:
Closed: Dec 2017
EstimatedDays: ----
NextAction: ----
OS: Chrome
Pri: 1
Type: Bug-Security



Sign in to add a comment

CrOS: Vulnerability reported in net-misc/curl

Project Member Reported by vomit.go...@appspot.gserviceaccount.com, Dec 16 2017

Issue description

Automated analysis has detected that the following third party packages have had vulnerabilities publicly reported. 

NOTE: There may be several bugs listed below - in almost all cases, all bugs can be quickly addressed by upgrading to the latest version of the package.

Package Name: net-misc/curl
Package Version: [cpe:/a:curl:curl:7.51.0 cpe:/a:curl:libcurl:7.51.0 cpe:/a:haxx:curl:7.51.0 cpe:/a:haxx:libcurl:7.51.0]

Advisory: CVE-2017-8816
  Details: https://vomit.googleplex.com/advisory?id=CVE/CVE-2017-8816
  CVSS severity score: 7.5/10.0
  Confidence: high
  Description:

The NTLM authentication feature in curl and libcurl before 7.57.0 on 32-bit platforms allows attackers to cause a denial of service (integer overflow and resultant buffer overflow, and application crash) or possibly have unspecified other impact via vectors involving long user and password fields.
Advisory: CVE-2017-8817
  Details: https://vomit.googleplex.com/advisory?id=CVE/CVE-2017-8817
  CVSS severity score: 7.5/10.0
  Confidence: high
  Description:

The FTP wildcard function in curl and libcurl before 7.57.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) or possibly have unspecified other impact via a string that ends with an '[' character.


 

Comment 1 by vapier@chromium.org, Dec 16 2017

Mergedinto: 789479
Owner: mnissler@chromium.org
Status: Duplicate (was: Untriaged)
here's the current versions:
- ToT: curl-7.57.0
- R64: curl-7.56.1
- R63: curl-7.56.1
- R62: curl-7.55.1

so i don't know where VOMIT is seeing 7.51.0
Project Member

Comment 2 by sheriffbot@chromium.org, Mar 25 2018

Labels: -Restrict-View-SecurityTeam allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment