Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 11

Количество 11

ubuntu логотип

CVE-2025-14819

7 месяцев назад

When doing TLS related transfers with reused easy or multi handles and altering the `CURLSSLOPT_NO_PARTIALCHAIN` option, libcurl could accidentally reuse a CA store cached in memory for which the partial chain option was reversed. Contrary to the user's wishes and expectations. This could make libcurl find and accept a trust chain that it otherwise would not.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2025-14819

7 месяцев назад

When doing TLS related transfers with reused easy or multi handles and altering the `CURLSSLOPT_NO_PARTIALCHAIN` option, libcurl could accidentally reuse a CA store cached in memory for which the partial chain option was reversed. Contrary to the user's wishes and expectations. This could make libcurl find and accept a trust chain that it otherwise would not.

CVSS3: 6.8
EPSS: Низкий
nvd логотип

CVE-2025-14819

7 месяцев назад

When doing TLS related transfers with reused easy or multi handles and altering the `CURLSSLOPT_NO_PARTIALCHAIN` option, libcurl could accidentally reuse a CA store cached in memory for which the partial chain option was reversed. Contrary to the user's wishes and expectations. This could make libcurl find and accept a trust chain that it otherwise would not.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2025-14819

7 месяцев назад

OpenSSL partial chain store policy bypass

EPSS: Низкий
debian логотип

CVE-2025-14819

7 месяцев назад

When doing TLS related transfers with reused easy or multi handles and ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-vqhr-m87q-9jqh

7 месяцев назад

When doing TLS related transfers with reused easy or multi handles and altering the `CURLSSLOPT_NO_PARTIALCHAIN` option, libcurl could accidentally reuse a CA store cached in memory for which the partial chain option was reversed. Contrary to the user's wishes and expectations. This could make libcurl find and accept a trust chain that it otherwise would not.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2026-06682

8 месяцев назад

Уязвимость программного средства для взаимодействия с серверами CURL, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0066-1

7 месяцев назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0052-1

7 месяцев назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0050-1

7 месяцев назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20031-1

7 месяцев назад

Security update for curl

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-14819

When doing TLS related transfers with reused easy or multi handles and altering the `CURLSSLOPT_NO_PARTIALCHAIN` option, libcurl could accidentally reuse a CA store cached in memory for which the partial chain option was reversed. Contrary to the user's wishes and expectations. This could make libcurl find and accept a trust chain that it otherwise would not.

CVSS3: 5.3
1%
Низкий
7 месяцев назад
redhat логотип
CVE-2025-14819

When doing TLS related transfers with reused easy or multi handles and altering the `CURLSSLOPT_NO_PARTIALCHAIN` option, libcurl could accidentally reuse a CA store cached in memory for which the partial chain option was reversed. Contrary to the user's wishes and expectations. This could make libcurl find and accept a trust chain that it otherwise would not.

CVSS3: 6.8
1%
Низкий
7 месяцев назад
nvd логотип
CVE-2025-14819

When doing TLS related transfers with reused easy or multi handles and altering the `CURLSSLOPT_NO_PARTIALCHAIN` option, libcurl could accidentally reuse a CA store cached in memory for which the partial chain option was reversed. Contrary to the user's wishes and expectations. This could make libcurl find and accept a trust chain that it otherwise would not.

CVSS3: 5.3
1%
Низкий
7 месяцев назад
msrc логотип
CVE-2025-14819

OpenSSL partial chain store policy bypass

1%
Низкий
7 месяцев назад
debian логотип
CVE-2025-14819

When doing TLS related transfers with reused easy or multi handles and ...

CVSS3: 5.3
1%
Низкий
7 месяцев назад
github логотип
GHSA-vqhr-m87q-9jqh

When doing TLS related transfers with reused easy or multi handles and altering the `CURLSSLOPT_NO_PARTIALCHAIN` option, libcurl could accidentally reuse a CA store cached in memory for which the partial chain option was reversed. Contrary to the user's wishes and expectations. This could make libcurl find and accept a trust chain that it otherwise would not.

CVSS3: 5.3
1%
Низкий
7 месяцев назад
fstec логотип
BDU:2026-06682

Уязвимость программного средства для взаимодействия с серверами CURL, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 5.3
1%
Низкий
8 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0066-1

Security update for curl

7 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0052-1

Security update for curl

7 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0050-1

Security update for curl

7 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20031-1

Security update for curl

7 месяцев назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.