6.8

CVE-2009-0037

Exploit
The redirect implementation in curl and libcurl 5.11 through 7.19.3, when CURLOPT_FOLLOWLOCATION is enabled, accepts arbitrary Location values, which might allow remote HTTP servers to (1) trigger arbitrary requests to intranet servers, (2) read or overwrite arbitrary files via a redirect to a file: URL, or (3) execute arbitrary commands via a redirect to an scp: URL.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CurlCurl Version5.11
CurlCurl Version6.0
CurlCurl Version6.1beta
CurlCurl Version6.2
CurlCurl Version6.3
CurlCurl Version6.3.1
CurlCurl Version6.4
CurlCurl Version6.5
CurlCurl Version6.5.1
CurlCurl Version6.5.2
CurlCurl Version7.1
CurlCurl Version7.1.1
CurlCurl Version7.2
CurlCurl Version7.2.1
CurlCurl Version7.3
CurlCurl Version7.4
CurlCurl Version7.4.1
CurlCurl Version7.4.2
CurlCurl Version7.5
CurlCurl Version7.5.1
CurlCurl Version7.5.2
CurlCurl Version7.6
CurlCurl Version7.6.1
CurlCurl Version7.7
CurlCurl Version7.7.1
CurlCurl Version7.7.2
CurlCurl Version7.7.3
CurlCurl Version7.8
CurlCurl Version7.8.1
CurlCurl Version7.8.2
CurlCurl Version7.9
CurlCurl Version7.9.1
CurlCurl Version7.9.2
CurlCurl Version7.9.3
CurlCurl Version7.9.4
CurlCurl Version7.9.5
CurlCurl Version7.9.6
CurlCurl Version7.9.7
CurlCurl Version7.9.8
CurlCurl Version7.10
CurlCurl Version7.10.1
CurlCurl Version7.10.2
CurlCurl Version7.10.3
CurlCurl Version7.10.4
CurlCurl Version7.10.5
CurlCurl Version7.10.6
CurlCurl Version7.10.7
CurlCurl Version7.10.8
CurlCurl Version7.11.1
CurlCurl Version7.12
CurlCurl Version7.12.1
CurlCurl Version7.12.2
CurlCurl Version7.13
CurlCurl Version7.13.2
CurlCurl Version7.14
CurlCurl Version7.14.1
CurlCurl Version7.15
CurlCurl Version7.15.1
CurlCurl Version7.15.3
CurlCurl Version7.16.3
CurlCurl Version7.16.4
CurlCurl Version7.17
CurlCurl Version7.18
CurlCurl Version7.19.3
CurlLibcurl Version5.11
CurlLibcurl Version7.12
CurlLibcurl Version7.12.1
CurlLibcurl Version7.12.2
CurlLibcurl Version7.12.3
CurlLibcurl Version7.13
CurlLibcurl Version7.13.1
CurlLibcurl Version7.13.2
CurlLibcurl Version7.14
CurlLibcurl Version7.14.1
CurlLibcurl Version7.15
CurlLibcurl Version7.15.1
CurlLibcurl Version7.15.2
CurlLibcurl Version7.15.3
CurlLibcurl Version7.16.3
CurlLibcurl Version7.19.3
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 7.81% 0.939
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
CWE-352 Cross-Site Request Forgery (CSRF)

The web application does not, or can not, sufficiently verify whether a well-formed, valid, consistent request was intentionally provided by the user who submitted the request.

http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html
http://support.apple.com/kb/HT4077
http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00001.html
http://secunia.com/advisories/34259
http://lists.vmware.com/pipermail/security-announce/2009/000060.html
http://secunia.com/advisories/35766
http://www.securityfocus.com/archive/1/504849/100/0/threaded
http://www.vmware.com/security/advisories/VMSA-2009-0009.html
http://www.vupen.com/english/advisories/2009/1865
http://curl.haxx.se/docs/adv_20090303.html
Patch
Vendor Advisory
http://curl.haxx.se/lxr/source/CHANGES
Patch
Vendor Advisory
http://secunia.com/advisories/34138
Vendor Advisory
http://secunia.com/advisories/34202
http://secunia.com/advisories/34237
http://secunia.com/advisories/34251
http://secunia.com/advisories/34255
http://secunia.com/advisories/34399
http://security.gentoo.org/glsa/glsa-200903-21.xml
http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.476602
http://wiki.rpath.com/wiki/Advisories:rPSA-2009-0042
http://www.debian.org/security/2009/dsa-1738
http://www.redhat.com/support/errata/RHSA-2009-0341.html
http://www.securityfocus.com/archive/1/501757/100/0/threaded
http://www.securityfocus.com/bid/33962
Patch
Exploit
http://www.securitytracker.com/id?1021783
http://www.ubuntu.com/usn/USN-726-1
http://www.vupen.com/english/advisories/2009/0581
Patch
Vendor Advisory
http://www.withdk.com/2009/03/03/curllibcurl-redirect-arbitrary-file-access/
http://www.withdk.com/archives/Libcurl_arbitrary_file_access.pdf
https://exchange.xforce.ibmcloud.com/vulnerabilities/49030
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11054
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6074