CVE-2000-0973
high · 10Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.
10
CVSS
18.1%
EPSS (exploit prob.)
97th
EPSS percentile
2000-12-19
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| daniel_stenberg | curl | 6.0 |
| daniel_stenberg | curl | 6.1 |
| daniel_stenberg | curl | 6.1beta |
| daniel_stenberg | curl | 6.3 |
| daniel_stenberg | curl | 6.4 |
| daniel_stenberg | curl | 6.5 |
| daniel_stenberg | curl | 6.5.1 |
| daniel_stenberg | curl | 6.5.2 |
| daniel_stenberg | curl | 7.1 |
| daniel_stenberg | curl | 7.1.1 |
| daniel_stenberg | curl | 7.2 |
| daniel_stenberg | curl | 7.2.1 |
| daniel_stenberg | curl | 7.3 |
| daniel_stenberg | curl | 7.4 |
Check a specific version with /api/v1/cve/match.
References
- ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:72.curl.asc
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0331.html
- http://www.securityfocus.com/bid/1804
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5374
- ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-00:72.curl.asc
- http://archives.neohapsis.com/archives/bugtraq/2000-10/0331.html
- http://www.securityfocus.com/bid/1804
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5374
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2000-0973