cURL/libcURL 'Curl_sasl_create_digest_md5_message()' Stack Buffer Overflow Vulnerability
BID:57842
Info
cURL/libcURL 'Curl_sasl_create_digest_md5_message()' Stack Buffer Overflow Vulnerability
| Bugtraq ID: | 57842 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2013-0249 |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 06 2013 12:00AM |
| Updated: | Apr 13 2015 10:24PM |
| Credit: | Volema |
| Vulnerable: |
Slackware Linux x86_64 -current Slackware Linux -current Gentoo Linux |
| Not Vulnerable: | |
Discussion
cURL/libcURL 'Curl_sasl_create_digest_md5_message()' Stack Buffer Overflow Vulnerability
cURL/libcURL is prone to a stack-based buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer.
An attacker could exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
cURL versions 7.26.0 through 7.28.1 are vulnerable.
cURL/libcURL is prone to a stack-based buffer-overflow vulnerability because the application fails to properly bounds-check user-supplied data before copying it into an insufficiently sized buffer.
An attacker could exploit this issue to execute arbitrary code in the context of the affected application. Failed exploit attempts will likely result in denial-of-service conditions.
cURL versions 7.26.0 through 7.28.1 are vulnerable.
Exploit / POC
cURL/libcURL 'Curl_sasl_create_digest_md5_message()' Stack Buffer Overflow Vulnerability
The researcher who discovered this issue has created a proof-of-concept. Please see the references for more information.
A commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
The researcher who discovered this issue has created a proof-of-concept. Please see the references for more information.
A commercial exploit is available through VUPEN Security - Exploit and PoCs Service. This exploit is not otherwise publicly available or known to be circulating in the wild.
Solution / Fix
cURL/libcURL 'Curl_sasl_create_digest_md5_message()' Stack Buffer Overflow Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
cURL/libcURL 'Curl_sasl_create_digest_md5_message()' Stack Buffer Overflow Vulnerability
References:
References:
- cURL changelog (Daniel Stenberg
) - cURL homepage (Daniel Stenberg
)