Количество 41
Количество 41

RLSA-2022:5313
Moderate: curl security update
ELSA-2022-5313
ELSA-2022-5313: curl security update (MODERATE)
ELSA-2022-5245
ELSA-2022-5245: curl security update (MODERATE)

SUSE-SU-2022:1680-1
Security update for curl

ROS-20220516-09
Множественные уязвимости cURL

SUSE-SU-2022:1657-1
Security update for curl

CVE-2022-27776
A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number.

CVE-2022-27776
A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number.

CVE-2022-27776
A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number.

CVE-2022-27776
HackerOne: CVE-2022-27776 Insufficiently protected credentials vulnerability might leak authentication or cookie header data
CVE-2022-27776
A insufficiently protected credentials vulnerability in fixed in curl ...
GHSA-hc85-wpv5-52wh
A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number.

BDU:2022-03040
Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVE-2022-22576
An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVE-2022-22576
An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVE-2022-22576
An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

CVE-2022-22576
CVE-2022-22576
An improper authentication vulnerability exists in curl 7.33.0 to and ...
GHSA-2r69-696x-qxj9
An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).

BDU:2022-03036
Уязвимость реализации протокола OAUTH2 утилиты командной строки cURL, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к защищаемой информации
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | RLSA-2022:5313 Moderate: curl security update | около 3 лет назад | ||
ELSA-2022-5313 ELSA-2022-5313: curl security update (MODERATE) | около 3 лет назад | |||
ELSA-2022-5245 ELSA-2022-5245: curl security update (MODERATE) | около 3 лет назад | |||
![]() | SUSE-SU-2022:1680-1 Security update for curl | около 3 лет назад | ||
![]() | ROS-20220516-09 Множественные уязвимости cURL | около 3 лет назад | ||
![]() | SUSE-SU-2022:1657-1 Security update for curl | около 3 лет назад | ||
![]() | CVE-2022-27776 A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number. | CVSS3: 6.5 | 1% Низкий | около 3 лет назад |
![]() | CVE-2022-27776 A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number. | CVSS3: 4.3 | 1% Низкий | больше 3 лет назад |
![]() | CVE-2022-27776 A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number. | CVSS3: 6.5 | 1% Низкий | около 3 лет назад |
![]() | CVE-2022-27776 HackerOne: CVE-2022-27776 Insufficiently protected credentials vulnerability might leak authentication or cookie header data | 1% Низкий | около 3 лет назад | |
CVE-2022-27776 A insufficiently protected credentials vulnerability in fixed in curl ... | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
GHSA-hc85-wpv5-52wh A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number. | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
![]() | BDU:2022-03040 Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 4.3 | 1% Низкий | больше 3 лет назад |
![]() | CVE-2022-22576 An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only). | CVSS3: 8.1 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-22576 An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only). | CVSS3: 8.1 | 0% Низкий | больше 3 лет назад |
![]() | CVE-2022-22576 An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only). | CVSS3: 8.1 | 0% Низкий | около 3 лет назад |
![]() | CVSS3: 8.1 | 0% Низкий | около 3 лет назад | |
CVE-2022-22576 An improper authentication vulnerability exists in curl 7.33.0 to and ... | CVSS3: 8.1 | 0% Низкий | около 3 лет назад | |
GHSA-2r69-696x-qxj9 An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only). | CVSS3: 8.1 | 0% Низкий | около 3 лет назад | |
![]() | BDU:2022-03036 Уязвимость реализации протокола OAUTH2 утилиты командной строки cURL, позволяющая нарушителю обойти процесс аутентификации и получить несанкционированный доступ к защищаемой информации | CVSS3: 3.7 | 0% Низкий | больше 3 лет назад |
Уязвимостей на страницу