Логотип exploitDog
bind:"CVE-2016-7141" OR bind:"CVE-2016-5419" OR bind:"CVE-2016-5420"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2016-7141" OR bind:"CVE-2016-5419" OR bind:"CVE-2016-5420"

Количество 22

Количество 22

suse-cvrf логотип

SUSE-SU-2016:2449-1

почти 9 лет назад

Security update for curl

EPSS: Низкий
oracle-oval логотип

ELSA-2016-2575

почти 9 лет назад

ELSA-2016-2575: curl security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:2379-1

почти 9 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:2330-1

почти 9 лет назад

Security update for curl

EPSS: Низкий
ubuntu логотип

CVE-2016-7141

почти 9 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-7141

около 9 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2016-7141

почти 9 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-7141

почти 9 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem. ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-vx32-35rm-8jq5

больше 3 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:0230-1

больше 7 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2699-1

почти 8 лет назад

Security update for SLES 12 Docker image

EPSS: Низкий
ubuntu логотип

CVE-2016-5420

около 9 лет назад

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-5420

около 9 лет назад

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2016-5420

около 9 лет назад

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-5420

около 9 лет назад

curl and libcurl before 7.50.1 do not check the client certificate whe ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2016-5419

около 9 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-5419

около 9 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2016-5419

около 9 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-5419

около 9 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption w ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2700-1

почти 8 лет назад

Security update for SLES 12-SP1 Docker image

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2016:2449-1

Security update for curl

почти 9 лет назад
oracle-oval логотип
ELSA-2016-2575

ELSA-2016-2575: curl security, bug fix, and enhancement update (MODERATE)

почти 9 лет назад
suse-cvrf логотип
openSUSE-SU-2016:2379-1

Security update for curl

почти 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:2330-1

Security update for curl

почти 9 лет назад
ubuntu логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
0%
Низкий
почти 9 лет назад
redhat логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 4.2
0%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
0%
Низкий
почти 9 лет назад
debian логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem. ...

CVSS3: 7.5
0%
Низкий
почти 9 лет назад
github логотип
GHSA-vx32-35rm-8jq5

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2018:0230-1

Security update for curl

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2017:2699-1

Security update for SLES 12 Docker image

почти 8 лет назад
ubuntu логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
1%
Низкий
около 9 лет назад
redhat логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 4.2
1%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
1%
Низкий
около 9 лет назад
debian логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate whe ...

CVSS3: 7.5
1%
Низкий
около 9 лет назад
ubuntu логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
2%
Низкий
около 9 лет назад
redhat логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 4.8
2%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
2%
Низкий
около 9 лет назад
debian логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption w ...

CVSS3: 7.5
2%
Низкий
около 9 лет назад
suse-cvrf логотип
SUSE-SU-2017:2700-1

Security update for SLES 12-SP1 Docker image

почти 8 лет назад

Уязвимостей на страницу