메뉴 건너뛰기

GREATUSER

cve

CVE-2017-7407

관리자 2017.04.04 19:00 조회 수 : 6

The ourWriteOut function in tool_writeout.c in curl 7.53.1 might allow physically proximate attackers to obtain sensitive information from process memory in opportunistic circumstances by reading a workstation screen during use of a --write-out argument ending in a '%' character, which leads to a heap-based buffer over-read.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-7407
위로