Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-3153

Опубликовано: 01 мая 2015
Источник: debian
EPSS Низкий

Описание

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
curlfixed7.42.1-1package
curlno-dsawheezypackage
curlno-dsasqueezepackage

Примечания

  • http://curl.haxx.se/docs/adv_20150429.html

EPSS

Процентиль: 94%
0.07247
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

redhat
больше 11 лет назад

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

nvd
больше 11 лет назад

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

github
больше 4 лет назад

The default configuration for cURL and libcurl before 7.42.1 sends custom HTTP headers to both the proxy and destination server, which might allow remote proxy servers to obtain sensitive information by reading the header contents.

suse-cvrf
больше 11 лет назад

Security update for curl

EPSS

Процентиль: 94%
0.07247
Низкий