Описание
When asked to both use a .netrc file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 8.20.0-2ubuntu1 |
| esm-infra-legacy/trusty | ignored | changes too intrusive |
| esm-infra-legacy/xenial | ignored | changes too intrusive |
| esm-infra/bionic | ignored | changes too intrusive |
| esm-infra/focal | ignored | changes too intrusive |
| esm-infra/xenial | ignored | end of ESM support, was needed |
| jammy | released | 7.81.0-1ubuntu1.24 |
| noble | released | 8.5.0-2ubuntu10.9 |
| questing | released | 8.14.1-2ubuntu1.3 |
| resolute | released | 8.18.0-1ubuntu2.1 |
Показывать по
EPSS
5.3 Medium
CVSS3
Связанные уязвимости
When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.
When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.
When asked to both use a `.netrc` file for credentials and to follow H ...
When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.
EPSS
5.3 Medium
CVSS3