curl – SOCKS5 heap buffer overflow – CVE-2023-38545
The Challenge: CVE-2023-38545 In the world of digital security, a formidable adversary has emerged – CVE-2023-38545. It exposes a critical heap buffer overflow in Curl’s SOCKS5 proxy handshake, demanding immediate action. The Dilemma: How It Unfolded When Curl passes a hostname to the SOCKS5 proxy, it should limit the length to 255 bytes. If it exceeds this limit, a bug […]