Логотип exploitDog
bind:"CVE-2022-43552"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2022-43552"

Количество 16

Количество 16

ubuntu логотип

CVE-2022-43552

больше 2 лет назад

A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2022-43552

больше 2 лет назад

A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2022-43552

больше 2 лет назад

A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path.

CVSS3: 5.9
EPSS: Низкий
msrc логотип

CVE-2022-43552

около 2 лет назад

Open Source Curl Remote Code Execution Vulnerability

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2022-43552

больше 2 лет назад

A use after free vulnerability exists in curl <7.87.0. Curl can be ask ...

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4633-1

больше 2 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4598-1

больше 2 лет назад

Security update for curl

EPSS: Низкий
redos логотип

ROS-20230414-04

около 2 лет назад

Уязвимость curl

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-6342-4x32-pp8v

больше 2 лет назад

A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path.

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2023-7743

больше 1 года назад

ELSA-2023-7743: curl security update (LOW)

EPSS: Низкий
fstec логотип

BDU:2024-07332

больше 2 лет назад

Уязвимость программного средства для взаимодействия с серверами CURL, связанная с использованием памяти после её освобождения, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:4597-1

больше 2 лет назад

Security update for curl

EPSS: Низкий
oracle-oval логотип

ELSA-2023-2963

около 2 лет назад

ELSA-2023-2963: curl security and bug fix update (LOW)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-2478

около 2 лет назад

ELSA-2023-2478: curl security update (LOW)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2228-1

около 2 лет назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:2226-1

около 2 лет назад

Security update for curl

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-43552

A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path.

CVSS3: 5.9
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2022-43552

A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path.

CVSS3: 5.9
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2022-43552

A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path.

CVSS3: 5.9
0%
Низкий
больше 2 лет назад
msrc логотип
CVE-2022-43552

Open Source Curl Remote Code Execution Vulnerability

CVSS3: 5.9
0%
Низкий
около 2 лет назад
debian логотип
CVE-2022-43552

A use after free vulnerability exists in curl <7.87.0. Curl can be ask ...

CVSS3: 5.9
0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4633-1

Security update for curl

0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4598-1

Security update for curl

0%
Низкий
больше 2 лет назад
redos логотип
ROS-20230414-04

Уязвимость curl

CVSS3: 5.9
0%
Низкий
около 2 лет назад
github логотип
GHSA-6342-4x32-pp8v

A use after free vulnerability exists in curl <7.87.0. Curl can be asked to *tunnel* virtually all protocols it supports through an HTTP proxy. HTTP proxies can (and often do) deny such tunnel operations. When getting denied to tunnel the specific protocols SMB or TELNET, curl would use a heap-allocated struct after it had been freed, in its transfer shutdown code path.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
oracle-oval логотип
ELSA-2023-7743

ELSA-2023-7743: curl security update (LOW)

больше 1 года назад
fstec логотип
BDU:2024-07332

Уязвимость программного средства для взаимодействия с серверами CURL, связанная с использованием памяти после её освобождения, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.9
0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2022:4597-1

Security update for curl

больше 2 лет назад
oracle-oval логотип
ELSA-2023-2963

ELSA-2023-2963: curl security and bug fix update (LOW)

около 2 лет назад
oracle-oval логотип
ELSA-2023-2478

ELSA-2023-2478: curl security update (LOW)

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2228-1

Security update for curl

около 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:2226-1

Security update for curl

около 2 лет назад

Уязвимостей на страницу