Vulnerabilities > Haxx > Libcurl > 7.50.3

DATE CVE VULNERABILITY TITLE RISK
2017-10-06 CVE-2017-1000254 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Haxx Libcurl
libcurl may read outside of a heap allocated buffer when doing FTP.
network
low complexity
haxx CWE-119
7.5
2017-10-05 CVE-2017-1000100 Information Exposure vulnerability in Haxx Libcurl
When doing a TFTP transfer and curl/libcurl is given a URL that contains a very long file name (longer than about 515 bytes), the file name is truncated to fit within the buffer boundaries, but the buffer size is still wrongly updated to use the untruncated length.
network
low complexity
haxx CWE-200
6.5