Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-8932

28 дней назад

libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. However, some TLS settings related to client certificates were left out from the configuration match checks, making them match too easily. In particular options related to the private key.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-8932

28 дней назад

libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. However, some TLS settings related to client certificates were left out from the configuration match checks, making them match too easily. In particular options related to the private key.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-8932

28 дней назад

libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. However, some TLS settings related to client certificates were left out from the configuration match checks, making them match too easily. In particular options related to the private key.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-8932

27 дней назад

incomplete mTLS config matching in conn reuse

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-8932

28 дней назад

libcurl would reuse a previously created connection even when some mTL ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-m7xm-hf59-w6rj

28 дней назад

libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. However, some TLS settings related to client certificates were left out from the configuration match checks, making them match too easily. In particular options related to the private key.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-8932

libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. However, some TLS settings related to client certificates were left out from the configuration match checks, making them match too easily. In particular options related to the private key.

CVSS3: 7.5
0%
Низкий
28 дней назад
redhat логотип
CVE-2026-8932

libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. However, some TLS settings related to client certificates were left out from the configuration match checks, making them match too easily. In particular options related to the private key.

CVSS3: 7.5
0%
Низкий
28 дней назад
nvd логотип
CVE-2026-8932

libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. However, some TLS settings related to client certificates were left out from the configuration match checks, making them match too easily. In particular options related to the private key.

CVSS3: 7.5
0%
Низкий
28 дней назад
msrc логотип
CVE-2026-8932

incomplete mTLS config matching in conn reuse

CVSS3: 7.5
0%
Низкий
27 дней назад
debian логотип
CVE-2026-8932

libcurl would reuse a previously created connection even when some mTL ...

CVSS3: 7.5
0%
Низкий
28 дней назад
github логотип
GHSA-m7xm-hf59-w6rj

libcurl would reuse a previously created connection even when some mTLS config related option had been changed that should have prohibited reuse. libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. However, some TLS settings related to client certificates were left out from the configuration match checks, making them match too easily. In particular options related to the private key.

CVSS3: 7.5
0%
Низкий
28 дней назад

Уязвимостей на страницу