Количество 41
Количество 41

CVE-2022-27776
A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number.

CVE-2022-27776
A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number.

CVE-2022-27776
A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number.

CVE-2022-27776
HackerOne: CVE-2022-27776 Insufficiently protected credentials vulnerability might leak authentication or cookie header data
CVE-2022-27776
A insufficiently protected credentials vulnerability in fixed in curl ...

CVE-2022-27782
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVE-2022-27782
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVE-2022-27782
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

CVE-2022-27782
CVE-2022-27782
libcurl would reuse a previously created connection even when a TLS or ...

SUSE-SU-2023:2225-1
Security update for curl
GHSA-hc85-wpv5-52wh
A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number.

BDU:2022-03040
Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
GHSA-x38v-8q6p-w65c
libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily.

BDU:2022-03185
Уязвимость реализации протоколов TLS и SSH утилиты командной строки cURL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

SUSE-SU-2022:1870-1
Security update for curl

SUSE-SU-2022:1805-1
Security update for curl

SUSE-SU-2022:1733-1
Security update for curl

SUSE-SU-2022:2829-1
Security update for curl

SUSE-SU-2022:2813-1
Security update for curl
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2022-27776 A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number. | CVSS3: 6.5 | 1% Низкий | около 3 лет назад |
![]() | CVE-2022-27776 A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number. | CVSS3: 4.3 | 1% Низкий | больше 3 лет назад |
![]() | CVE-2022-27776 A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number. | CVSS3: 6.5 | 1% Низкий | около 3 лет назад |
![]() | CVE-2022-27776 HackerOne: CVE-2022-27776 Insufficiently protected credentials vulnerability might leak authentication or cookie header data | 1% Низкий | около 3 лет назад | |
CVE-2022-27776 A insufficiently protected credentials vulnerability in fixed in curl ... | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
![]() | CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily. | CVSS3: 7.5 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily. | CVSS3: 7.5 | 0% Низкий | около 3 лет назад |
![]() | CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily. | CVSS3: 7.5 | 0% Низкий | около 3 лет назад |
![]() | CVSS3: 7.5 | 0% Низкий | около 3 лет назад | |
CVE-2022-27782 libcurl would reuse a previously created connection even when a TLS or ... | CVSS3: 7.5 | 0% Низкий | около 3 лет назад | |
![]() | SUSE-SU-2023:2225-1 Security update for curl | около 2 лет назад | ||
GHSA-hc85-wpv5-52wh A insufficiently protected credentials vulnerability in fixed in curl 7.83.0 might leak authentication or cookie header data on HTTP redirects to the same host but another port number. | CVSS3: 6.5 | 1% Низкий | около 3 лет назад | |
![]() | BDU:2022-03040 Уязвимость утилиты командной строки cURL, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 4.3 | 1% Низкий | больше 3 лет назад |
GHSA-x38v-8q6p-w65c libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have prohibited reuse.libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse if one of them matches the setup. However, several TLS andSSH settings were left out from the configuration match checks, making themmatch too easily. | CVSS3: 7.5 | 0% Низкий | около 3 лет назад | |
![]() | BDU:2022-03185 Уязвимость реализации протоколов TLS и SSH утилиты командной строки cURL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 5.3 | 0% Низкий | больше 3 лет назад |
![]() | SUSE-SU-2022:1870-1 Security update for curl | около 3 лет назад | ||
![]() | SUSE-SU-2022:1805-1 Security update for curl | около 3 лет назад | ||
![]() | SUSE-SU-2022:1733-1 Security update for curl | около 3 лет назад | ||
![]() | SUSE-SU-2022:2829-1 Security update for curl | почти 3 года назад | ||
![]() | SUSE-SU-2022:2813-1 Security update for curl | почти 3 года назад |
Уязвимостей на страницу