Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-22945

Опубликовано: 23 сент. 2021
Источник: ubuntu
Приоритет: medium
CVSS2: 5.8
CVSS3: 9.1

Описание

When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances erroneously keep a pointer to an already freed memory area and both use that again in a subsequent call to send data and also free it again.

РелизСтатусПримечание
bionic

not-affected

7.58.0-2ubuntu3.14
devel

released

7.74.0-1.3ubuntu2
esm-infra-legacy/trusty

not-affected

7.35.0-1ubuntu2.20+esm7
esm-infra/bionic

not-affected

7.58.0-2ubuntu3.14
esm-infra/focal

not-affected

7.68.0-1ubuntu2.6
esm-infra/xenial

not-affected

7.47.0-1ubuntu2.19
focal

not-affected

7.68.0-1ubuntu2.6
hirsute

released

7.74.0-1ubuntu2.3
impish

released

7.74.0-1.3ubuntu2
jammy

released

7.74.0-1.3ubuntu2

Показывать по

5.8 Medium

CVSS2

9.1 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.1
redhat
почти 4 года назад

When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances erroneously keep a pointer to an already freed memory area and both use that again in a subsequent call to send data and also free it *again*.

CVSS3: 9.1
nvd
больше 3 лет назад

When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances erroneously keep a pointer to an already freed memory area and both use that again in a subsequent call to send data and also free it *again*.

CVSS3: 9.1
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 9.1
debian
больше 3 лет назад

When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 coul ...

CVSS3: 9.1
github
около 3 лет назад

When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances erroneously keep a pointer to an already freed memory area and both use that again in a subsequent call to send data and also free it *again*.

5.8 Medium

CVSS2

9.1 Critical

CVSS3