Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
CVE-2019-5482
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2019-5482
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-5482.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2019-5482
Aliases
CURL-CVE-2019-5482
Downstream
ALPINE-CVE-2019-5482
DEBIAN-CVE-2019-5482
DLA-1917-1
DSA-4633-1
RHSA-2020:0250
RHSA-2020:1792
RHSA-2020:3916
RHSA-2021:0759
RHSA-2021:0877
RHSA-2021:1027
SUSE-SU-2019:14172-1
SUSE-SU-2019:2339-2
SUSE-SU-2019:2373-1
SUSE-SU-2019:2381-1
UBUNTU-CVE-2019-5482
USN-4129-1
USN-4129-2
openSUSE-SU-2019:2149-1
openSUSE-SU-2019:2169-1
openSUSE-SU-2024:10582-1
Related
MGASA-2019-0337
SUSE-SU-2019:14172-1
SUSE-SU-2019:2339-2
SUSE-SU-2019:2373-1
SUSE-SU-2019:2381-1
openSUSE-SU-2019:2149-1
openSUSE-SU-2019:2169-1
openSUSE-SU-2024:10582-1
Published
2019-09-16T19:15:10Z
Modified
2025-10-13T09:00:23.591790Z
Severity
9.8 (Critical)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
[none]
Details
Heap buffer overflow in the TFTP protocol handler in cURL 7.19.4 to 7.65.3.
References
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00048.html
http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00055.html
https://curl.haxx.se/docs/CVE-2019-5482.html
https://seclists.org/bugtraq/2020/Feb/36
https://security.gentoo.org/glsa/202003-29
https://security.netapp.com/advisory/ntap-20191004-0003/
https://security.netapp.com/advisory/ntap-20200416-0003/
https://www.debian.org/security/2020/dsa-4633
https://www.oracle.com/security-alerts/cpuapr2020.html
https://www.oracle.com/security-alerts/cpujan2020.html
https://www.oracle.com/security-alerts/cpuoct2020.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6CI4QQ2RSZX4VCFM76SIWGKY6BY7UWIC/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RGDVKSLY5JUNJRLYRUA6CXGQ2LM63XC3/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UA7KDM2WPM5CJDDGOEGFV6SSGD2J7RNT/
Affected packages
Git
/
github.com/curl/curl
Affected ranges
Type
GIT
Repo
https://github.com/curl/curl
Events
Last affected
172e54cda18412da73fd8eb4e444e8a5b371ca59
Last affected
6fa1d817e5b1a00d7d0c8168091877476b499317
Introduced
042cc1f69ec0878f542667cb684378869f859911
Last affected
aa73eb47bc8583070734696b25b34ad54c2c1f5e
Type
GIT
Repo
https://github.com/mysql/mysql-server
Events
Last affected
4a4838059fd109428eb90df27c4682b9d206cbb0
Last affected
824e2b4064053f7daf17d7f3f84b7a3ed92e5fb4
Introduced
270fd3411e3d671a73ed9725940a30080f59ce6d
Last affected
91a17cedb1ee880fe7915fb14cfd74c04e8d6588
Introduced
f9e2c6cd27268e72198bde3c1a71eb1273df335a
Last affected
b2f3214ae2b4a250d3b8a7b7a61037f89b5dc9b1
Last affected
dc86e412f18b36ce271f791026714e8caa0ec919
Affected versions
Other
curl-7_19_4
curl-7_19_5
curl-7_19_6
curl-7_19_7
curl-7_20_0
curl-7_20_1
curl-7_21_0
curl-7_21_1
curl-7_21_2
curl-7_21_3
curl-7_21_4
curl-7_21_5
curl-7_21_6
curl-7_21_7
curl-7_22_0
curl-7_23_0
curl-7_23_1
curl-7_24_0
curl-7_25_0
curl-7_26_0
curl-7_27_0
curl-7_28_0
curl-7_28_1
curl-7_29_0
curl-7_30_0
curl-7_31_0
curl-7_32_0
curl-7_33_0
curl-7_34_0
curl-7_35_0
curl-7_36_0
curl-7_37_0
curl-7_37_1
curl-7_38_0
curl-7_39_0
curl-7_40_0
curl-7_41_0
curl-7_42_0
curl-7_43_0
curl-7_44_0
curl-7_45_0
curl-7_46_0
curl-7_47_0
curl-7_47_1
curl-7_48_0
curl-7_49_0
curl-7_49_1
curl-7_50_0
curl-7_50_1
curl-7_50_2
curl-7_50_3
curl-7_51_0
curl-7_52_0
curl-7_52_1
curl-7_53_0
curl-7_53_1
curl-7_54_0
curl-7_54_1
curl-7_55_0
curl-7_55_1
curl-7_56_0
curl-7_56_1
curl-7_57_0
curl-7_58_0
curl-7_59_0
curl-7_60_0
curl-7_61_0
curl-7_61_1
curl-7_62_0
curl-7_63_0
curl-7_64_0
curl-7_64_1
curl-7_65_0
curl-7_65_1
curl-7_65_2
curl-7_65_3
curl-7_66_0
curl-7_67_0
curl-7_68_0
curl-7_69_0
curl-7_69_1
curl-7_70_0
curl-7_71_0
curl-7_71_1
curl-7_72_0
curl-7_73_0
curl-7_74_0
curl-7_75_0
curl-7_76_0
curl-7_76_1
curl-7_77_0
curl-7_78_0
curl-7_79_0
curl-7_79_1
curl-7_80_0
curl-7_81_0
curl-7_82_0
curl-7_83_0
curl-7_83_1
curl-7_84_0
curl-7_85_0
curl-7_86_0
curl-7_87_0
curl-7_88_0
curl-7_88_1
curl-8_0_0
curl-8_0_1
curl-8_1_0
curl-8_1_1
curl-8_1_2
curl-8_2_0
curl-8_2_1
curl-8_3_0
curl-8_4_0
tiny-curl-8_4_0
mysql-5.*
mysql-5.0.0
mysql-8.*
mysql-8.0.0
CVE-2019-5482 - OSV