Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-3153

Опубликовано: 01 мая 2015
Источник: debian

Описание

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
curlfixed7.42.1-1package
curlno-dsawheezypackage
curlno-dsasqueezepackage

Примечания

  • http://curl.haxx.se/docs/adv_20150429.html

Связанные уязвимости

ubuntu
почти 11 лет назад

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

redhat
почти 11 лет назад

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

nvd
почти 11 лет назад

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

github
больше 3 лет назад

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

suse-cvrf
почти 11 лет назад

Security update for curl