Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
CURL-CVE-2024-9681
  • github.com/curl/curl.git
HSTS subdomain overwrites parent cache entry 05 Nov
  • Fix available
CURL-CVE-2024-8096
  • github.com/curl/curl.git
OCSP stapling bypass with GnuTLS 11 Sep
  • Fix available
CURL-CVE-2024-7264
  • github.com/curl/curl.git
ASN.1 date parser overread 31 Jul
  • Fix available
CURL-CVE-2024-6197
  • github.com/curl/curl.git
freeing stack buffer in utf8asn1str 24 Jul
  • Fix available
CURL-CVE-2024-6874
  • github.com/curl/curl.git
macidn punycode buffer overread 24 Jul
  • Fix available
CURL-CVE-2024-2004
  • github.com/curl/curl.git
Usage of disabled protocol 27 Mar
  • Fix available
CURL-CVE-2024-2379
  • github.com/curl/curl.git
QUIC certificate check bypass with wolfSSL 27 Mar
  • Fix available
CURL-CVE-2024-2398
  • github.com/curl/curl.git
HTTP/2 push headers memory-leak 27 Mar
  • Fix available
CURL-CVE-2024-2466
  • github.com/curl/curl.git
TLS certificate check bypass with mbedTLS 27 Mar
  • Fix available
CURL-CVE-2024-0853
  • github.com/curl/curl.git
OCSP verification bypass with TLS session reuse 31 Jan
  • Fix available
CURL-CVE-2023-46218
  • github.com/curl/curl.git
cookie mixed case PSL bypass 06 Dec 2023
  • Fix available
CURL-CVE-2023-46219
  • github.com/curl/curl.git
HSTS long filename clears contents 06 Dec 2023
  • Fix available
CURL-CVE-2023-38545
  • github.com/curl/curl.git
SOCKS5 heap buffer overflow 11 Oct 2023
  • Fix available
CURL-CVE-2023-38546
  • github.com/curl/curl.git
cookie injection with none file 11 Oct 2023
  • Fix available
CURL-CVE-2023-38039
  • github.com/curl/curl.git
HTTP headers eat all memory 13 Sep 2023
  • Fix available
CURL-CVE-2023-28319
  • github.com/curl/curl.git
UAF in SSH sha256 fingerprint check 17 May 2023
  • Fix available