Количество 30
Количество 30
ELSA-2022-6157
ELSA-2022-6157: curl security update (MODERATE)

SUSE-SU-2022:2305-1
Security update for curl

SUSE-SU-2022:2327-1
Security update for curl

SUSE-SU-2022:2288-1
Security update for curl

RLSA-2022:6159
Moderate: curl security update
ELSA-2022-6159
ELSA-2022-6159: curl security update (MODERATE)

SUSE-SU-2022:2829-1
Security update for curl

SUSE-SU-2022:2813-1
Security update for curl

CVE-2022-32208
When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client.

CVE-2022-32208
When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client.

CVE-2022-32208
When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client.

CVE-2022-32208
CVE-2022-32208
When curl < 7.84.0 does FTP transfers secured by krb5, it handles mess ...

SUSE-SU-2022:2356-1
Security update for curl
GHSA-gfg8-2cqc-6cmc
When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client.

BDU:2022-06911
Уязвимость программного средства для взаимодействия с серверами CURL, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным

CVE-2022-32207
When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended.

CVE-2022-32207
When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended.

CVE-2022-32207
When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended.

CVE-2022-32207
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
ELSA-2022-6157 ELSA-2022-6157: curl security update (MODERATE) | почти 3 года назад | |||
![]() | SUSE-SU-2022:2305-1 Security update for curl | около 3 лет назад | ||
![]() | SUSE-SU-2022:2327-1 Security update for curl | около 3 лет назад | ||
![]() | SUSE-SU-2022:2288-1 Security update for curl | около 3 лет назад | ||
![]() | RLSA-2022:6159 Moderate: curl security update | почти 3 года назад | ||
ELSA-2022-6159 ELSA-2022-6159: curl security update (MODERATE) | почти 3 года назад | |||
![]() | SUSE-SU-2022:2829-1 Security update for curl | почти 3 года назад | ||
![]() | SUSE-SU-2022:2813-1 Security update for curl | почти 3 года назад | ||
![]() | CVE-2022-32208 When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client. | CVSS3: 5.9 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-32208 When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client. | CVSS3: 5.3 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-32208 When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client. | CVSS3: 5.9 | 0% Низкий | около 3 лет назад |
![]() | CVSS3: 5.9 | 0% Низкий | около 3 лет назад | |
CVE-2022-32208 When curl < 7.84.0 does FTP transfers secured by krb5, it handles mess ... | CVSS3: 5.9 | 0% Низкий | около 3 лет назад | |
![]() | SUSE-SU-2022:2356-1 Security update for curl | 0% Низкий | около 3 лет назад | |
GHSA-gfg8-2cqc-6cmc When curl < 7.84.0 does FTP transfers secured by krb5, it handles message verification failures wrongly. This flaw makes it possible for a Man-In-The-Middle attack to go unnoticed and even allows it to inject data to the client. | CVSS3: 5.9 | 0% Низкий | около 3 лет назад | |
![]() | BDU:2022-06911 Уязвимость программного средства для взаимодействия с серверами CURL, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным | CVSS3: 5.9 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-32207 When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended. | CVSS3: 9.8 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-32207 When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended. | CVSS3: 9.8 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-32207 When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended. | CVSS3: 9.8 | 0% Низкий | около 3 лет назад |
![]() | CVSS3: 9.8 | 0% Низкий | около 3 лет назад |
Уязвимостей на страницу