Логотип exploitDog
bind:"CVE-2016-7141" OR bind:"CVE-2016-5419" OR bind:"CVE-2016-5420"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2016-7141" OR bind:"CVE-2016-5419" OR bind:"CVE-2016-5420"

Количество 22

Количество 22

suse-cvrf логотип

SUSE-SU-2016:2449-1

около 9 лет назад

Security update for curl

EPSS: Низкий
oracle-oval логотип

ELSA-2016-2575

около 9 лет назад

ELSA-2016-2575: curl security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:2379-1

около 9 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2016:2330-1

около 9 лет назад

Security update for curl

EPSS: Низкий
ubuntu логотип

CVE-2016-7141

около 9 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-7141

около 9 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2016-7141

около 9 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-7141

около 9 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem. ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-vx32-35rm-8jq5

больше 3 лет назад

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:0230-1

почти 8 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2699-1

около 8 лет назад

Security update for SLES 12 Docker image

EPSS: Низкий
ubuntu логотип

CVE-2016-5420

больше 9 лет назад

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-5420

больше 9 лет назад

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 4.2
EPSS: Низкий
nvd логотип

CVE-2016-5420

больше 9 лет назад

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-5420

больше 9 лет назад

curl and libcurl before 7.50.1 do not check the client certificate whe ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2016-5419

больше 9 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-5419

больше 9 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 4.8
EPSS: Низкий
nvd логотип

CVE-2016-5419

больше 9 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-5419

больше 9 лет назад

curl and libcurl before 7.50.1 do not prevent TLS session resumption w ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2017:2700-1

около 8 лет назад

Security update for SLES 12-SP1 Docker image

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
SUSE-SU-2016:2449-1

Security update for curl

около 9 лет назад
oracle-oval логотип
ELSA-2016-2575

ELSA-2016-2575: curl security, bug fix, and enhancement update (MODERATE)

около 9 лет назад
suse-cvrf логотип
openSUSE-SU-2016:2379-1

Security update for curl

около 9 лет назад
suse-cvrf логотип
SUSE-SU-2016:2330-1

Security update for curl

около 9 лет назад
ubuntu логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
0%
Низкий
около 9 лет назад
redhat логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 4.2
0%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
0%
Низкий
около 9 лет назад
debian логотип
CVE-2016-7141

curl and libcurl before 7.50.2, when built with NSS and the libnsspem. ...

CVSS3: 7.5
0%
Низкий
около 9 лет назад
github логотип
GHSA-vx32-35rm-8jq5

curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2018:0230-1

Security update for curl

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2017:2699-1

Security update for SLES 12 Docker image

около 8 лет назад
ubuntu логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
1%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 4.2
1%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVSS3: 7.5
1%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-5420

curl and libcurl before 7.50.1 do not check the client certificate whe ...

CVSS3: 7.5
1%
Низкий
больше 9 лет назад
ubuntu логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
2%
Низкий
больше 9 лет назад
redhat логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 4.8
2%
Низкий
больше 9 лет назад
nvd логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVSS3: 7.5
2%
Низкий
больше 9 лет назад
debian логотип
CVE-2016-5419

curl and libcurl before 7.50.1 do not prevent TLS session resumption w ...

CVSS3: 7.5
2%
Низкий
больше 9 лет назад
suse-cvrf логотип
SUSE-SU-2017:2700-1

Security update for SLES 12-SP1 Docker image

около 8 лет назад

Уязвимостей на страницу