by @Smartkeyss
22 May 2024

DoS in cURL: HTTP headers eat all memory (CVE-2023-38039)

by @Smartkeyss
22 May 2024

DoS in cURL: HTTP headers eat all memory (CVE-2023-38039)

CVEs

7.5 High Severity

PoC video

Summary

cURL's unrestricted header storage lets malicious servers overwhelm memory, leading to CVE-2023-38039, fixed in version 8.4.0.

Description

users/photos/clsevlral8gef1hon15grbvup.jpg

@Smartkeyss

63 posts

I am just curious 😊 I use simple words to explain complicated things.

Total vcoins

99.8K

Comments (1)