Vulnerability Description
A denial of service vulnerability exists in curl <v8.1.0 in the way libcurl provides several different backends for resolving host names, selected at build time. If it is built to use the synchronous resolver, it allows name resolves to time-out slow operations using `alarm()` and `siglongjmp()`. When doing this, libcurl used a global buffer that was not mutex protected and a multi-threaded application might therefore crash or otherwise misbehave.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Haxx | Curl | < 8.1.0 |
| Apple | Macos | >= 11.0, < 11.7.9 |
| Netapp | Clustered Data Ontap | - |
| Netapp | Ontap Antivirus Connector | - |
| Netapp | H300S Firmware | - |
| Netapp | H300S | - |
| Netapp | H500S Firmware | - |
| Netapp | H500S | - |
| Netapp | H700S Firmware | - |
| Netapp | H700S | - |
| Netapp | H410S Firmware | - |
| Netapp | H410S | - |
Related Weaknesses (CWE)
References
- http://seclists.org/fulldisclosure/2023/Jul/47Mailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2023/Jul/48Mailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2023/Jul/52Mailing ListThird Party Advisory
- https://hackerone.com/reports/1929597ExploitPatchThird Party Advisory
- https://security.gentoo.org/glsa/202310-12Third Party Advisory
- https://security.netapp.com/advisory/ntap-20230609-0009/Third Party Advisory
- https://support.apple.com/kb/HT213843Third Party Advisory
- https://support.apple.com/kb/HT213844Third Party Advisory
- https://support.apple.com/kb/HT213845Third Party Advisory
- http://seclists.org/fulldisclosure/2023/Jul/47Mailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2023/Jul/48Mailing ListThird Party Advisory
- http://seclists.org/fulldisclosure/2023/Jul/52Mailing ListThird Party Advisory
- https://hackerone.com/reports/1929597ExploitPatchThird Party Advisory
- https://security.gentoo.org/glsa/202310-12Third Party Advisory
- https://security.netapp.com/advisory/ntap-20230609-0009/Third Party Advisory
FAQ
What is CVE-2023-28320?
CVE-2023-28320 is a vulnerability with a CVSS score of 5.9 (MEDIUM). A denial of service vulnerability exists in curl <v8.1.0 in the way libcurl provides several different backends for resolving host names, selected at build time. If it is built to use the synchronous ...
How severe is CVE-2023-28320?
CVE-2023-28320 has been rated MEDIUM with a CVSS base score of 5.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-28320?
Check the references section above for vendor advisories and patch information. Affected products include: Haxx Curl, Apple Macos, Netapp Clustered Data Ontap, Netapp Ontap Antivirus Connector, Netapp H300S Firmware.