CVE-2024-6874

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
24/07/2024
Last modified:
10/09/2024

Description

libcurl&amp;#39;s URL API function<br /> [curl_url_get()](https://curl.se/libcurl/c/curl_url_get.html) offers punycode<br /> conversions, to and from IDN. Asking to convert a name that is exactly 256<br /> bytes, libcurl ends up reading outside of a stack based buffer when built to<br /> use the *macidn* IDN backend. The conversion function then fills up the<br /> provided buffer exactly - but does not null terminate the string.<br /> <br /> This flaw can lead to stack contents accidently getting returned as part of<br /> the converted string.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:haxx:libcurl:8.8.0:*:*:*:*:*:*:*