Anatomy of a vulnerability - cURL web download toolkit holed by authentication bug
- — Feb. 10, 2013, 4:11 a.m.
You may not have heard of cURL, but you've probably used software that uses it.
Recent versions contain a buffer overflow bug that could lead to remote code execution on your computer.
Paul Ducklin investigates, explains and advises...
Sign up now »
I’m dating myself, but I remember when holiday shopping involved pouring through ads in the Sunday paper, placing actual phone calls from tethered land lines to research product stock and availability, and actually driving places to pick things up. Now, holiday shoppers can do all of that from a smartphone or tablet in a few seconds, but there are some security pitfalls to be aware of.