Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-45289

Опубликовано: 12 нояб. 2024
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

The fetch(3) library uses environment variables for passing certain information, including the revocation file pathname. The environment variable name used by fetch(1) to pass the filename to the library was incorrect, in effect ignoring the option.

Fetch would still connect to a host presenting a certificate included in the revocation file passed to the --crl option.

EPSS

Процентиль: 44%
0.00218
Низкий

7.5 High

CVSS3

Дефекты

CWE-665

Связанные уязвимости

CVSS3: 7.5
github
около 1 года назад

The fetch(3) library uses environment variables for passing certain information, including the revocation file pathname. The environment variable name used by fetch(1) to pass the filename to the library was incorrect, in effect ignoring the option. Fetch would still connect to a host presenting a certificate included in the revocation file passed to the --crl option.

EPSS

Процентиль: 44%
0.00218
Низкий

7.5 High

CVSS3

Дефекты

CWE-665