Количество 41
Количество 41

RLSA-2022:5313
Moderate: curl security update
ELSA-2022-5313
ELSA-2022-5313: curl security update (MODERATE)
ELSA-2022-5245
ELSA-2022-5245: curl security update (MODERATE)

ROS-20220516-09
Множественные уязвимости cURL

CVE-2022-27774
An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVE-2022-27774
An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVE-2022-27774
An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

CVE-2022-27774
CVE-2022-27774
An insufficiently protected credentials vulnerability exists in curl 4 ...
GHSA-7xmh-mw7w-rr97
An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers.

BDU:2022-03041
Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

SUSE-SU-2022:1680-1
Security update for curl

SUSE-SU-2022:1657-1
Security update for curl

CVE-2022-27782
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVE-2022-27782
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVE-2022-27782
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVE-2022-27782
CVE-2022-27782
libcurl would reuse a previously created connection even when a TLS or ...

SUSE-SU-2023:2225-1
Security update for curl
GHSA-x38v-8q6p-w65c
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | RLSA-2022:5313 Moderate: curl security update | около 3 лет назад | ||
ELSA-2022-5313 ELSA-2022-5313: curl security update (MODERATE) | около 3 лет назад | |||
ELSA-2022-5245 ELSA-2022-5245: curl security update (MODERATE) | около 3 лет назад | |||
![]() | ROS-20220516-09 Множественные уязвимости cURL | около 3 лет назад | ||
![]() | CVE-2022-27774 An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers. | CVSS3: 5.7 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-27774 An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers. | CVSS3: 5 | 0% Низкий | больше 3 лет назад |
![]() | CVE-2022-27774 An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers. | CVSS3: 5.7 | 0% Низкий | около 3 лет назад |
![]() | CVSS3: 5.7 | 0% Низкий | около 3 лет назад | |
CVE-2022-27774 An insufficiently protected credentials vulnerability exists in curl 4 ... | CVSS3: 5.7 | 0% Низкий | около 3 лет назад | |
GHSA-7xmh-mw7w-rr97 An insufficiently protected credentials vulnerability exists in curl 4.9 to and include curl 7.82.0 are affected that could allow an attacker to extract credentials when follows HTTP(S) redirects is used with authentication could leak credentials to other services that exist on different protocols or port numbers. | CVSS3: 5.7 | 0% Низкий | около 3 лет назад | |
![]() | BDU:2022-03041 Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 5 | 0% Низкий | больше 3 лет назад |
![]() | SUSE-SU-2022:1680-1 Security update for curl | около 3 лет назад | ||
![]() | SUSE-SU-2022:1657-1 Security update for curl | около 3 лет назад | ||
![]() | CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily. | CVSS3: 7.5 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily. | CVSS3: 7.5 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily. | CVSS3: 7.5 | 0% Низкий | около 3 лет назад |
![]() | CVSS3: 7.5 | 0% Низкий | около 3 лет назад | |
CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or ... | CVSS3: 7.5 | 0% Низкий | около 3 лет назад | |
![]() | SUSE-SU-2023:2225-1 Security update for curl | около 2 лет назад | ||
GHSA-x38v-8q6p-w65c libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily. | CVSS3: 7.5 | 0% Низкий | около 3 лет назад |
Уязвимостей на страницу