Описание
curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 8.18.0-1ubuntu2 |
| esm-infra-legacy/trusty | not-affected | code not present |
| esm-infra-legacy/xenial | not-affected | code not present |
| esm-infra/bionic | released | 7.58.0-2ubuntu3.24+esm8 |
| esm-infra/focal | released | 7.68.0-1ubuntu2.25+esm3 |
| esm-infra/xenial | not-affected | code not present |
| jammy | released | 7.81.0-1ubuntu1.23 |
| noble | released | 8.5.0-2ubuntu10.8 |
| questing | released | 8.14.1-2ubuntu1.2 |
| resolute | released | 8.18.0-1ubuntu2 |
Показывать по
EPSS
6.5 Medium
CVSS3
Связанные уязвимости
curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.
curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.
curl would wrongly reuse an existing HTTP proxy connection doing CONNE ...
curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.
EPSS
6.5 Medium
CVSS3