PT-2017-17715 · Curl+3 · Curl+3
Brian Carpenter
·
Published
2017-04-03
·
Updated
2026-05-18
·
CVE-2017-7407
CVSS v3.1
2.4
Low
| Vector | AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
curl version 7.53.1
Description
The issue is related to the ourWriteOut function in tool writeout.c, which might allow physically proximate attackers to obtain sensitive information from process memory in opportunistic circumstances by reading a workstation screen during use of a --write-out argument ending in a '%' character. This leads to a heap-based buffer over-read. The curl security team notes that the memory this would output comes from the process the user itself invokes and that runs with the same privileges as the user, posing minimal risk. The flaw only exists in the command line tool.
Recommendations
For curl version 7.53.1, consider avoiding the use of the --write-out argument ending in a '%' character until a patch is available. As a temporary workaround, restrict the use of the
--write-out option to minimize the risk of exploitation.Fix
Buffer Over-read
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Suse
Ubuntu
Curl