CVE-2017-8818: Haxx Curl

Critical severity, CVSS 9.8. EPSS: 3.8% chance of exploitation in the next 30 days.

curl and libcurl before 7.57.0 on 32-bit platforms allow attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact because too little memory is allocated for interfacing to an SSL library.

Affected products

  • Haxx Curl: version 7.56.0 only; version 7.56.1 only
  • Haxx Libcurl: version 7.56.0 only; version 7.56.1 only

Published 2017-11-29. Last modified 2026-06-17.