Количество 22
Количество 22

SUSE-SU-2016:2449-1
Security update for curl
ELSA-2016-2575
ELSA-2016-2575: curl security, bug fix, and enhancement update (MODERATE)

openSUSE-SU-2016:2379-1
Security update for curl

SUSE-SU-2016:2330-1
Security update for curl

CVE-2016-7141
curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVE-2016-7141
curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

CVE-2016-7141
curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.
CVE-2016-7141
curl and libcurl before 7.50.2, when built with NSS and the libnsspem. ...
GHSA-vx32-35rm-8jq5
curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420.

SUSE-SU-2018:0230-1
Security update for curl

SUSE-SU-2017:2699-1
Security update for SLES 12 Docker image

CVE-2016-5420
curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVE-2016-5420
curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.

CVE-2016-5420
curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.
CVE-2016-5420
curl and libcurl before 7.50.1 do not check the client certificate whe ...

CVE-2016-5419
curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVE-2016-5419
curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.

CVE-2016-5419
curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session.
CVE-2016-5419
curl and libcurl before 7.50.1 do not prevent TLS session resumption w ...

SUSE-SU-2017:2700-1
Security update for SLES 12-SP1 Docker image
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | SUSE-SU-2016:2449-1 Security update for curl | почти 9 лет назад | ||
ELSA-2016-2575 ELSA-2016-2575: curl security, bug fix, and enhancement update (MODERATE) | почти 9 лет назад | |||
![]() | openSUSE-SU-2016:2379-1 Security update for curl | почти 9 лет назад | ||
![]() | SUSE-SU-2016:2330-1 Security update for curl | почти 9 лет назад | ||
![]() | CVE-2016-7141 curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420. | CVSS3: 7.5 | 0% Низкий | почти 9 лет назад |
![]() | CVE-2016-7141 curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420. | CVSS3: 4.2 | 0% Низкий | около 9 лет назад |
![]() | CVE-2016-7141 curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420. | CVSS3: 7.5 | 0% Низкий | почти 9 лет назад |
CVE-2016-7141 curl and libcurl before 7.50.2, when built with NSS and the libnsspem. ... | CVSS3: 7.5 | 0% Низкий | почти 9 лет назад | |
GHSA-vx32-35rm-8jq5 curl and libcurl before 7.50.2, when built with NSS and the libnsspem.so library is available at runtime, allow remote attackers to hijack the authentication of a TLS connection by leveraging reuse of a previously loaded client certificate from file for a connection for which no certificate has been set, a different vulnerability than CVE-2016-5420. | CVSS3: 7.5 | 0% Низкий | больше 3 лет назад | |
![]() | SUSE-SU-2018:0230-1 Security update for curl | больше 7 лет назад | ||
![]() | SUSE-SU-2017:2699-1 Security update for SLES 12 Docker image | почти 8 лет назад | ||
![]() | CVE-2016-5420 curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate. | CVSS3: 7.5 | 1% Низкий | около 9 лет назад |
![]() | CVE-2016-5420 curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate. | CVSS3: 4.2 | 1% Низкий | около 9 лет назад |
![]() | CVE-2016-5420 curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate. | CVSS3: 7.5 | 1% Низкий | около 9 лет назад |
CVE-2016-5420 curl and libcurl before 7.50.1 do not check the client certificate whe ... | CVSS3: 7.5 | 1% Низкий | около 9 лет назад | |
![]() | CVE-2016-5419 curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session. | CVSS3: 7.5 | 2% Низкий | около 9 лет назад |
![]() | CVE-2016-5419 curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session. | CVSS3: 4.8 | 2% Низкий | около 9 лет назад |
![]() | CVE-2016-5419 curl and libcurl before 7.50.1 do not prevent TLS session resumption when the client certificate has changed, which allows remote attackers to bypass intended restrictions by resuming a session. | CVSS3: 7.5 | 2% Низкий | около 9 лет назад |
CVE-2016-5419 curl and libcurl before 7.50.1 do not prevent TLS session resumption w ... | CVSS3: 7.5 | 2% Низкий | около 9 лет назад | |
![]() | SUSE-SU-2017:2700-1 Security update for SLES 12-SP1 Docker image | почти 8 лет назад |
Уязвимостей на страницу