curl: RTSP RTP buffer over-read
Published Mar 14, 2018
9.1
CRITICALCVSS 3.0
EPSS 9.04%
Description
A buffer over-read exists in curl 7.20.0 to and including curl 7.58.0 in the RTSP+RTP handling code that allows an attacker to cause a denial of service or information leakage
Affected products
No data.
Configuration 1
- 7.0
- 8.0
- 9.0
Configuration 2
- 12.04
- 14.04
- 16.04
- 17.10
Configuration 4
- 7.0
- 7.0
- 7.0
Configuration 5
- < 7.2
- 12.2.2
- 12.3.3
- 8.55
- 8.56
- 8.57
No data.
JBoss Core Services Apache HTTP Server 2.4.29 SP2
jbcs-httpd24-curl
Fixed · RHSA-2019:1543
Red Hat Enterprise Linux 7
curl-0:7.29.0-51.el7
Fixed · RHSA-2018:3157
Red Hat Enterprise Linux 7
nss-pem-0:1.0.3-5.el7
Fixed · RHSA-2018:3157
Red Hat Enterprise Linux 7.4 Advanced Update Support
curl-0:7.29.0-42.el7_4.2
Fixed · RHSA-2020:0594
Red Hat Enterprise Linux 7.4 Telco Extended Update Support
curl-0:7.29.0-42.el7_4.2
Fixed · RHSA-2020:0594
Red Hat Enterprise Linux 7.4 Update Services for SAP Solutions
curl-0:7.29.0-42.el7_4.2
Fixed · RHSA-2020:0594
Red Hat Enterprise Linux 7.5 Extended Update Support
curl-0:7.29.0-46.el7_5.1
Fixed · RHSA-2020:0544
Red Hat Software Collections for Red Hat Enterprise Linux 6
httpd24-curl-0:7.61.1-1.el6
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 6
httpd24-httpd-0:2.4.34-7.el6
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 6
httpd24-nghttp2-0:1.7.1-7.el6
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7
httpd24-curl-0:7.61.1-1.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7
httpd24-httpd-0:2.4.34-7.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7
httpd24-nghttp2-0:1.7.1-7.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7.4 EUS
httpd24-curl-0:7.61.1-1.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7.4 EUS
httpd24-httpd-0:2.4.34-7.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7.4 EUS
httpd24-nghttp2-0:1.7.1-7.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUS
httpd24-curl-0:7.61.1-1.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUS
httpd24-httpd-0:2.4.34-7.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUS
httpd24-nghttp2-0:1.7.1-7.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS
httpd24-curl-0:7.61.1-1.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS
httpd24-httpd-0:2.4.34-7.el7
Fixed · RHSA-2018:3558
Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS
httpd24-nghttp2-0:1.7.1-7.el7
Fixed · RHSA-2018:3558
.NET Core 1.0 on Red Hat Enterprise Linux
rh-dotnetcore10-curl
Out of support scope
.NET Core 1.1 on Red Hat Enterprise Linux
rh-dotnetcore11-curl
Out of support scope
.NET Core 2.0 on Red Hat Enterprise Linux
rh-dotnet20-curl
Out of support scope
.NET Core 2.1 on Red Hat Enterprise Linux
rh-dotnet21-curl
Will not fix
Red Hat Ceph Storage 2
curl
Will not fix
Red Hat Enterprise Linux 5
curl
Not affected
Red Hat Enterprise Linux 6
curl
Not affected
Red Hat Enterprise Linux 8
curl
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| JBoss Core Services Apache HTTP Server 2.4.29 SP2 | jbcs-httpd24-curl | Fixed | RHSA-2019:1543 |
| Red Hat Enterprise Linux 7 | curl-0:7.29.0-51.el7 | Fixed | RHSA-2018:3157 |
| Red Hat Enterprise Linux 7 | nss-pem-0:1.0.3-5.el7 | Fixed | RHSA-2018:3157 |
| Red Hat Enterprise Linux 7.4 Advanced Update Support | curl-0:7.29.0-42.el7_4.2 | Fixed | RHSA-2020:0594 |
| Red Hat Enterprise Linux 7.4 Telco Extended Update Support | curl-0:7.29.0-42.el7_4.2 | Fixed | RHSA-2020:0594 |
| Red Hat Enterprise Linux 7.4 Update Services for SAP Solutions | curl-0:7.29.0-42.el7_4.2 | Fixed | RHSA-2020:0594 |
| Red Hat Enterprise Linux 7.5 Extended Update Support | curl-0:7.29.0-46.el7_5.1 | Fixed | RHSA-2020:0544 |
| Red Hat Software Collections for Red Hat Enterprise Linux 6 | httpd24-curl-0:7.61.1-1.el6 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 6 | httpd24-httpd-0:2.4.34-7.el6 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 6 | httpd24-nghttp2-0:1.7.1-7.el6 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7 | httpd24-curl-0:7.61.1-1.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7 | httpd24-httpd-0:2.4.34-7.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7 | httpd24-nghttp2-0:1.7.1-7.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.4 EUS | httpd24-curl-0:7.61.1-1.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.4 EUS | httpd24-httpd-0:2.4.34-7.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.4 EUS | httpd24-nghttp2-0:1.7.1-7.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUS | httpd24-curl-0:7.61.1-1.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUS | httpd24-httpd-0:2.4.34-7.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.5 EUS | httpd24-nghttp2-0:1.7.1-7.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS | httpd24-curl-0:7.61.1-1.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS | httpd24-httpd-0:2.4.34-7.el7 | Fixed | RHSA-2018:3558 |
| Red Hat Software Collections for Red Hat Enterprise Linux 7.6 EUS | httpd24-nghttp2-0:1.7.1-7.el7 | Fixed | RHSA-2018:3558 |
| .NET Core 1.0 on Red Hat Enterprise Linux | rh-dotnetcore10-curl | Out of support scope | n/a |
| .NET Core 1.1 on Red Hat Enterprise Linux | rh-dotnetcore11-curl | Out of support scope | n/a |
| .NET Core 2.0 on Red Hat Enterprise Linux | rh-dotnet20-curl | Out of support scope | n/a |
| .NET Core 2.1 on Red Hat Enterprise Linux | rh-dotnet21-curl | Will not fix | n/a |
| Red Hat Ceph Storage 2 | curl | Will not fix | n/a |
| Red Hat Enterprise Linux 5 | curl | Not affected | n/a |
| Red Hat Enterprise Linux 6 | curl | Not affected | n/a |
| Red Hat Enterprise Linux 8 | curl | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (21)
- http://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.html x_refsource_CONFIRMPatch
- http://www.oracle.com/technetwork/security-advisory/cpuoct2018-4428296.html x_refsource_CONFIRMPatch
- http://www.securityfocus.com/bid/103436 vdb-entryx_refsource_BIDThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1040530 vdb-entryx_refsource_SECTRACKThird Party AdvisoryVDB Entry
- https://access.redhat.com/errata/RHBA-2019:0327 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3157 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2018:3558 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:1543 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2020:0544 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/errata/RHSA-2020:0594 vendor-advisoryx_refsource_REDHAT
- https://access.redhat.com/security/cve/CVE-2018-1000122 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1553398 Issue Tracking
- https://curl.haxx.se/docs/adv_2018-b047.html x_refsource_CONFIRMVendor Advisory
- https://lists.debian.org/debian-lts-announce/2018/03/msg00012.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-1000122
- https://usn.ubuntu.com/3598-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://usn.ubuntu.com/3598-2/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2018-1000122
- https://www.debian.org/security/2018/dsa-4136 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html x_refsource_CONFIRMPatchThird Party Advisory
- https://www.oracle.com/technetwork/security-advisory/cpujul2019-5072835.html x_refsource_MISC
Change history (0)
No recorded changes yet.