Back

CRITICAL

curl: Use-after-free when closing "easy" handle in Curl_close()

Published Oct 31, 2018

Description

A heap use-after-free flaw was found in curl versions from 7.59.0 through 7.61.1 in the code related to closing an easy handle. When closing and cleaning up an 'easy' handle in the `Curl_close()` function, the library code first frees a struct (without nulling the pointer) and might then subsequently erroneously write to a struct field within that already freed struct.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (10)

Change history (4)
  1. MITRE
    • CVSS vector changed from CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L to CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
    • CVSS score changed from 5 to 4.3
  2. REDHAT
    • CVSS vector changed from CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N to CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L
    • CVSS score changed from 4.3 to 5
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Oct 31, 2018
Updated Apr 16, 2026
Reserved Sep 11, 2018
CISA Vulnrichment
Updated Apr 16, 2026
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity Low
Public date Oct 31, 2018