PT-2019-3585 · Openssl+3 · Openssl+4

Published

2019-06-12

·

Updated

2021-11-03

·

CVE-2019-5443

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions curl versions 7.65.1 and earlier MySQL Server versions 5.7.27 and earlier, 8.0.17 and earlier
Description The issue is related to incorrect code generation management in the libcurl library. It allows a non-privileged user or program to place code and a config file in a known non-privileged path, which can make curl automatically run the code as an OpenSSL "engine" on invocation. If curl is invoked by a privileged user, it can perform any desired actions. This flaw can be exploited to elevate privileges or execute arbitrary code. There exists proof of concept exploits of this flaw.
Recommendations For curl versions 7.65.1 and earlier, consider disabling the use of OpenSSL "engine" until a patch is available. For MySQL Server versions 5.7.27 and earlier, 8.0.17 and earlier, restrict access to the Server:Compiling(cURL) subcomponent to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Uncontrolled Search Path Element

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-3247
ALT-PU-2020-1827
BDU:2019-03792
CVE-2019-5443

Affected Products

Alt Linux
Mysql Server
Openssl
Curl
Libcurl