imPC@ndo IT

Tracker / CVE-2019-5436

CVE-2019-5436

High 7.8

A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.

Affected products and versions

debian debian_linux
f5 traffix_signaling_delivery_controller · 5.0.0 → 5.1.0
fedoraproject fedora
haxx libcurl · 7.19.4 → 7.64.1
netapp hci_management_node
netapp solidfire
netapp steelstore_cloud_integrated_storage
opensuse leap
oracle enterprise_manager_ops_center
oracle mysql_server · … → 5.7.27
oracle mysql_server · 5.7.28 → 8.0.17
oracle oss_support_tools

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References