CVE DATABASE / CVE-2009-0037
CVE-2009-0037
CVSS 6.8 · MEDIUM
Summary
The redirect implementation in curl and libcurl 5.11 through 7.19.3, when CURLOPT_FOLLOWLOCATION is enabled, accepts arbitrary Location values, which might allow remote HTTP servers to (1) trigger arbitrary requests to intranet servers, (2) read or overwrite arbitrary files via a redirect to a file: URL, or (3) execute arbitrary commands via a redirect to an scp: URL.
CVSS 2.0 breakdown
| Base score | 6.8 (MEDIUM) |
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
| Attack vector | NETWORK |
| Attack complexity | MEDIUM |
| Confidentiality | PARTIAL |
| Integrity | PARTIAL |
| Availability | PARTIAL |
Weakness type (CWE)
Affected products
Curl curlCurl libcurl
Check this CVE live
Use our free CVE Lookup tool for the latest NVD record, or browse the full CISA KEV catalog.
References
- http://curl.haxx.se/docs/adv_20090303.html
- http://curl.haxx.se/lxr/source/CHANGES
- http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html
- http://lists.opensuse.org/opensuse-security-announce/2009-03/msg00001.html
- http://lists.vmware.com/pipermail/security-announce/2009/000060.html
- http://secunia.com/advisories/34138
- http://secunia.com/advisories/34202
- http://secunia.com/advisories/34237
- http://secunia.com/advisories/34251
- http://secunia.com/advisories/34255
- http://secunia.com/advisories/34259
- http://secunia.com/advisories/34399
- http://secunia.com/advisories/35766
- http://security.gentoo.org/glsa/glsa-200903-21.xml
- http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.476602
Data: NIST NVD. NVD last modified 2026-04-23. Always verify against the vendor advisory before acting.