← All CVEs

CVE-2000-0973

high · 10

Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.

10
CVSS
18.1%
EPSS (exploit prob.)
97th
EPSS percentile
2000-12-19
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
daniel_stenbergcurl6.0
daniel_stenbergcurl6.1
daniel_stenbergcurl6.1beta
daniel_stenbergcurl6.3
daniel_stenbergcurl6.4
daniel_stenbergcurl6.5
daniel_stenbergcurl6.5.1
daniel_stenbergcurl6.5.2
daniel_stenbergcurl7.1
daniel_stenbergcurl7.1.1
daniel_stenbergcurl7.2
daniel_stenbergcurl7.2.1
daniel_stenbergcurl7.3
daniel_stenbergcurl7.4

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2000-0973