Bug 965640 (CVE-2013-2174)
| Summary: | CVE-2013-2174 curl: Loop counter error, leading to heap-based buffer overflow when decoding certain URLs | ||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | Jan Lieskovsky <jlieskov> | ||||||||
| Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> | ||||||||
| Status: | CLOSED ERRATA | QA Contact: | |||||||||
| Severity: | medium | Docs Contact: | |||||||||
| Priority: | medium | ||||||||||
| Version: | unspecified | CC: | jrusnack, kdudka, ksrot, security-response-team | ||||||||
| Target Milestone: | --- | Keywords: | Security | ||||||||
| Target Release: | --- | ||||||||||
| Hardware: | All | ||||||||||
| OS: | Linux | ||||||||||
| Whiteboard: | |||||||||||
| Fixed In Version: | curl 7.31.0 | Doc Type: | Bug Fix | ||||||||
| Doc Text: | Story Points: | --- | |||||||||
| Clone Of: | Environment: | ||||||||||
| Last Closed: | 2013-10-01 07:08:25 UTC | Type: | --- | ||||||||
| Regression: | --- | Mount Type: | --- | ||||||||
| Documentation: | --- | CRM: | |||||||||
| Verified Versions: | Category: | --- | |||||||||
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||||||
| Cloudforms Team: | --- | Target Upstream Version: | |||||||||
| Embargoed: | |||||||||||
| Bug Depends On: | 973940, 973941, 973943, 973944, 978227, 978228 | ||||||||||
| Bug Blocks: | 965650 | ||||||||||
| Attachments: |
|
||||||||||
|
Description
Jan Lieskovsky
2013-05-21 13:03:37 UTC
This issue affects the versions of the curl package, as shipped with Red Hat Enterprise Linux 5 and 6. -- This issue affects the versions of the curl package, as shipped with Fedora release of 17 and 18. Created attachment 751161 [details]
Proposed upstream patch to correct this issue
Created attachment 751162 [details]
And related upstream test case
released updates for stable Fedora: https://admin.fedoraproject.org/updates/curl-7.24.0-10.fc17 https://admin.fedoraproject.org/updates/curl-7.27.0-11.fc18 https://admin.fedoraproject.org/updates/curl-7.29.0-7.fc19 Acknowledgements: Red Hat would like to thank the cURL project for reporting this issue. Upstream acknowledges Timo Sirainen as the original reporter. This issue has been addressed in following products: Red Hat Enterprise Linux 5 Red Hat Enterprise Linux 6 Via RHSA-2013:0983 https://rhn.redhat.com/errata/RHSA-2013-0983.html Created mingw32-curl tracking bugs for this issue Affects: epel-5 [bug 978228] Created mingw-curl tracking bugs for this issue Affects: fedora-all [bug 978227] curl-7.29.0-7.fc19 has been pushed to the Fedora 19 stable repository. If problems still persist, please make note of it in this bug report. curl-7.27.0-11.fc18 has been pushed to the Fedora 18 stable repository. If problems still persist, please make note of it in this bug report. curl-7.24.0-10.fc17 has been pushed to the Fedora 17 stable repository. If problems still persist, please make note of it in this bug report. Relevant upstream patch: https://github.com/bagder/curl/commit/192c4f788d48f82c03e9cef40013f34370e90737 |