Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-3784

Опубликовано: 11 мар. 2026
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 6.5

Описание

curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.

РелизСтатусПримечание
devel

released

8.18.0-1ubuntu2
esm-infra-legacy/trusty

not-affected

code not present
esm-infra-legacy/xenial

not-affected

code not present
esm-infra/bionic

released

7.58.0-2ubuntu3.24+esm8
esm-infra/focal

released

7.68.0-1ubuntu2.25+esm3
esm-infra/xenial

not-affected

code not present
jammy

released

7.81.0-1ubuntu1.23
noble

released

8.5.0-2ubuntu10.8
questing

released

8.14.1-2ubuntu1.2
resolute

released

8.18.0-1ubuntu2

Показывать по

EPSS

Процентиль: 23%
0.00302
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
redhat
5 месяцев назад

curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.

CVSS3: 6.5
nvd
5 месяцев назад

curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.

CVSS3: 6.5
msrc
5 месяцев назад

wrong proxy connection reuse with credentials

CVSS3: 6.5
debian
5 месяцев назад

curl would wrongly reuse an existing HTTP proxy connection doing CONNE ...

CVSS3: 6.5
github
5 месяцев назад

curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.

EPSS

Процентиль: 23%
0.00302
Низкий

6.5 Medium

CVSS3