Description
The base64 encode function in curl before version 7.51.0 is prone to a buffer being under allocated in 32bit systems if it receives at least 1Gb as input via `CURLOPT_USERNAME`.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-711-1 | curl security update |
Debian DSA |
DSA-3705-1 | curl security update |
EUVD |
EUVD-2016-9462 | The base64 encode function in curl before version 7.51.0 is prone to a buffer being under allocated in 32bit systems if it receives at least 1Gb as input via `CURLOPT_USERNAME`. |
Ubuntu USN |
USN-3123-1 | curl vulnerabilities |
References
History
Thu, 16 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2026-04-16T13:31:37.984Z
Reserved: 2016-10-12T00:00:00.000Z
Link: CVE-2016-8617
Updated: 2024-08-06T02:27:41.225Z
Status : Modified
Published: 2018-07-31T22:29:00.250
Modified: 2024-11-21T02:59:41.167
Link: CVE-2016-8617
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD
Ubuntu USN