curl / Docs / Vulnerability table / 7.61.1 vulnerabilities

Vulnerabilities in curl 7.61.1

curl version 7.61.1 was released on September 5 2018. The following 6 security problems are known to exist in this version.

FlawFrom versionTo and includingCVECWE
NTLM type-2 out-of-bounds buffer read7. Out-of-bounds Read
NTLMv2 type-3 header stack buffer overflow7. Stack-based Buffer Overflow
SMTP end-of-response out-of-bounds read7. Out-of-bounds Read
warning message out-of-buffer read7. Out-of-bounds Read
use-after-free in handle close7. Use After Free
SASL password overflow via integer overflow7. Incorrect Calculation of Buffer Size

Changelog for curl 7.61.1

See vulnerability summary for the previous release: 7.61.0 or the subsequent release: 7.62.0