Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-3148

Опубликовано: 24 апр. 2015
Источник: debian
EPSS Низкий

Описание

cURL and libcurl 7.10.6 through 7.41.0 do not properly re-use authenticated Negotiate connections, which allows remote attackers to connect as other users via a request.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
curlfixed7.42.0-1package

Примечания

  • http://curl.haxx.se/docs/adv_20150422B.html

EPSS

Процентиль: 80%
0.01442
Низкий

Связанные уязвимости

ubuntu
больше 10 лет назад

cURL and libcurl 7.10.6 through 7.41.0 do not properly re-use authenticated Negotiate connections, which allows remote attackers to connect as other users via a request.

redhat
больше 10 лет назад

cURL and libcurl 7.10.6 through 7.41.0 do not properly re-use authenticated Negotiate connections, which allows remote attackers to connect as other users via a request.

nvd
больше 10 лет назад

cURL and libcurl 7.10.6 through 7.41.0 do not properly re-use authenticated Negotiate connections, which allows remote attackers to connect as other users via a request.

github
больше 3 лет назад

cURL and libcurl 7.10.6 through 7.41.0 do not properly re-use authenticated Negotiate connections, which allows remote attackers to connect as other users via a request.

suse-cvrf
больше 10 лет назад

Security update for curl

EPSS

Процентиль: 80%
0.01442
Низкий