Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0015

Опубликовано: 02 фев. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 4

Описание

cURL and libcurl 7.10.6 through 7.34.0, when more than one authentication method is enabled, re-uses NTLM connections, which might allow context-dependent attackers to authenticate as other users via a request.

РелизСтатусПримечание
devel

released

7.35.0-1ubuntu1
lucid

released

7.19.7-1ubuntu1.6
precise

released

7.22.0-3ubuntu4.7
quantal

released

7.27.0-1ubuntu1.8
saucy

released

7.32.0-1ubuntu1.3
upstream

released

7.35.0-1

Показывать по

4 Medium

CVSS2

Связанные уязвимости

redhat
больше 11 лет назад

cURL and libcurl 7.10.6 through 7.34.0, when more than one authentication method is enabled, re-uses NTLM connections, which might allow context-dependent attackers to authenticate as other users via a request.

nvd
больше 11 лет назад

cURL and libcurl 7.10.6 through 7.34.0, when more than one authentication method is enabled, re-uses NTLM connections, which might allow context-dependent attackers to authenticate as other users via a request.

debian
больше 11 лет назад

cURL and libcurl 7.10.6 through 7.34.0, when more than one authenticat ...

github
больше 3 лет назад

cURL and libcurl 7.10.6 through 7.34.0, when more than one authentication method is enabled, re-uses NTLM connections, which might allow context-dependent attackers to authenticate as other users via a request.

oracle-oval
больше 11 лет назад

ELSA-2014-0561: curl security and bug fix update (MODERATE)

4 Medium

CVSS2