Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-10148

Опубликовано: 12 сент. 2025
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 5.3

Описание

curl's websocket code did not update the 32 bit mask pattern for each new outgoing frame as the specification says. Instead it used a fixed mask that persisted and was used throughout the entire connection. A predictable mask pattern allows for a malicious server to induce traffic between the two communicating parties that could be interpreted by an involved proxy (configured or transparent) as genuine, real, HTTP traffic with content and thereby poison its cache. That cached poisoned content could then be served to all users of that proxy.

РелизСтатусПримечание
devel

not-affected

8.18.0
esm-infra-legacy/trusty

not-affected

code not present
esm-infra-legacy/xenial

not-affected

code not present
esm-infra/bionic

not-affected

code not present
esm-infra/focal

not-affected

code not present
esm-infra/xenial

not-affected

code not present
jammy

not-affected

code not present
noble

released

8.5.0-2ubuntu10.7
plucky

ignored

end of life, was needed
questing

released

8.14.1-2ubuntu1.1

Показывать по

EPSS

Процентиль: 41%
0.00499
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.8
redhat
11 месяцев назад

curl's websocket code did not update the 32 bit mask pattern for each new outgoing frame as the specification says. Instead it used a fixed mask that persisted and was used throughout the entire connection. A predictable mask pattern allows for a malicious server to induce traffic between the two communicating parties that could be interpreted by an involved proxy (configured or transparent) as genuine, real, HTTP traffic with content and thereby poison its cache. That cached poisoned content could then be served to all users of that proxy.

CVSS3: 5.3
nvd
11 месяцев назад

curl's websocket code did not update the 32 bit mask pattern for each new outgoing frame as the specification says. Instead it used a fixed mask that persisted and was used throughout the entire connection. A predictable mask pattern allows for a malicious server to induce traffic between the two communicating parties that could be interpreted by an involved proxy (configured or transparent) as genuine, real, HTTP traffic with content and thereby poison its cache. That cached poisoned content could then be served to all users of that proxy.

CVSS3: 6.5
msrc
11 месяцев назад

predictable WebSocket mask

CVSS3: 5.3
debian
11 месяцев назад

curl's websocket code did not update the 32 bit mask pattern for each ...

CVSS3: 5.3
github
11 месяцев назад

curl's websocket code did not update the 32 bit mask pattern for each new outgoing frame as the specification says. Instead it used a fixed mask that persisted and was used throughout the entire connection. A predictable mask pattern allows for a malicious server to induce traffic between the two communicating parties that could be interpreted by an involved proxy (configured or transparent) as genuine, real, HTTP traffic with content and thereby poison its cache. That cached poisoned content could then be served to all users of that proxy.

EPSS

Процентиль: 41%
0.00499
Низкий

5.3 Medium

CVSS3