[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248678

 
 

909

 
 

195426

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2021-1525 --- curl

ID: oval:org.secpod.oval:def:1601465Date: (C)2021-09-13   (M)2024-04-03
Class: PATCHFamily: unix




A flaw was found in libcurl in the way libcurl handles previously used connections without accounting for "issuer cert" and comparing the involved paths case-insensitively. This flaw allows libcurl to use the wrong connection. The highest threat from this vulnerability is to confidentiality

Platform:
Amazon Linux AMI
Product:
curl
libcurl
Reference:
ALAS-2021-1525
CVE-2021-22924
CVE    1
CVE-2021-22924
CPE    3
cpe:/o:amazon:linux
cpe:/a:curl:libcurl
cpe:/a:haxx:curl

© SecPod Technologies