← Back to browse · API

CVE-2019-5436

Severity
HIGH
CVSS
7.8
EPSS
0.49739
Risk score
48.61
CISA KEV
No
PoC
No
Published
2019-05-28
Modified
2026-04-15
First seen
2026-08-07
Aliases
EUVD-2019-15026, GHSA-8XVC-P9X4-W7JM
Products
curl:curl Fixed in 7.65.0
Sources
euvd EUVD-2019-15026

Description

A heap buffer overflow in the TFTP receiving code allows for DoS or arbitrary code execution in libcurl versions 7.19.4 through 7.64.1.

References