← Back to browse · API

CVE-2017-8816

Severity
CRITICAL
CVSS
9.8
EPSS
0.08523
Risk score
42.18
CISA KEV
No
PoC
No
Published
2017-11-29
Modified
2026-04-15
First seen
2026-08-07
Aliases
EUVD-2017-17759, GHSA-2546-5J9R-QGGH
Products
n/a:curl and libcurl before 7.57.0 curl and libcurl before 7.57.0
Sources
euvd EUVD-2017-17759

Description

The NTLM authentication feature in curl and libcurl before 7.57.0 on 32-bit platforms allows attackers to cause a denial of service (integer overflow and resultant buffer overflow, and application crash) or possibly have unspecified other impact via vectors involving long user and password fields.

References