Vulnerabilities > Haxx > Curl > 7.26.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2013-03-08 | CVE-2013-0249 | Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products Stack-based buffer overflow in the Curl_sasl_create_digest_md5_message function in lib/curl_sasl.c in curl and libcurl 7.26.0 through 7.28.1, when negotiating SASL DIGEST-MD5 authentication, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string in the realm parameter in a (1) POP3, (2) SMTP or (3) IMAP message. | 7.5 |