libcurls ASN1 parser code has the GTime2str()
function, used for parsing an
ASN.1 Generalized Time field. If given an syntactically incorrect field, the
parser might end up using -1 for the length of the time fraction, leading to
a strlen()
getting performed on a pointer to a heap buffer area that is not
(purposely) null terminated.
This flaw most likely leads to a crash, but can also lead to heap contents getting returned to the application when CURLINFO_CERTINFO is used.
The product reads data past the end, or before the beginning, of the intended buffer.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libcurl | Haxx | 7.32.0 (including) | 8.9.1 (excluding) |
Red Hat OpenShift Service Mesh 2.6 for RHEL 8 | RedHat | openshift-service-mesh/grafana-rhel8:2.6.2-3 | * |
Red Hat OpenShift Service Mesh 2.6 for RHEL 8 | RedHat | openshift-service-mesh/istio-cni-rhel8:2.6.2-5 | * |
Red Hat OpenShift Service Mesh 2.6 for RHEL 8 | RedHat | openshift-service-mesh/istio-must-gather-rhel8:2.6.2-4 | * |
Red Hat OpenShift Service Mesh 2.6 for RHEL 8 | RedHat | openshift-service-mesh/istio-rhel8-operator:2.6.2-5 | * |
Red Hat OpenShift Service Mesh 2.6 for RHEL 8 | RedHat | openshift-service-mesh/kiali-ossmc-rhel8:1.89.2-3 | * |
Red Hat OpenShift Service Mesh 2.6 for RHEL 8 | RedHat | openshift-service-mesh/kiali-rhel8:1.89.4-3 | * |
Red Hat OpenShift Service Mesh 2.6 for RHEL 8 | RedHat | openshift-service-mesh/kiali-rhel8-operator:1.89.6-1 | * |
Red Hat OpenShift Service Mesh 2.6 for RHEL 8 | RedHat | openshift-service-mesh/pilot-rhel8:2.6.2-5 | * |
Red Hat OpenShift Service Mesh 2.6 for RHEL 8 | RedHat | openshift-service-mesh/ratelimit-rhel8:2.6.2-3 | * |
Red Hat OpenShift Service Mesh 2.6 for RHEL 9 | RedHat | openshift-service-mesh/proxyv2-rhel9:2.6.2-7 | * |
Curl | Ubuntu | devel | * |
Curl | Ubuntu | esm-infra/bionic | * |
Curl | Ubuntu | esm-infra/xenial | * |
Curl | Ubuntu | focal | * |
Curl | Ubuntu | jammy | * |
Curl | Ubuntu | noble | * |
Curl | Ubuntu | oracular | * |
Curl | Ubuntu | trusty/esm | * |
Curl | Ubuntu | upstream | * |