Lucene search

K
fedoraFedoraFEDORA:10E4020C2977
HistoryApr 09, 2023 - 1:41 a.m.

[SECURITY] Fedora 36 Update: curl-7.82.0-14.fc36

2023-04-0901:41:25
lists.fedoraproject.org
18
fedora
update
curl
url data transfer
ftp
ssl
http
https
scp
sftp
tftp
telnet
dict
ldap
ldaps
file
imap
smtp
pop3
rtsp
authentication
cookies
proxies
unix

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.1

Confidence

Low

EPSS

0.003

Percentile

71.7%

curl is a command line tool for transferring data with URL syntax, supporting FTP, FTPS, HTTP, HTTPS, SCP, SFTP, TFTP, TELNET, DICT, LDAP, LDAPS, FILE, IMA P, SMTP, POP3 and RTSP. curl supports SSL certificates, HTTP POST, HTTP PUT, FTP uploading, HTTP form based upload, proxies, cookies, user+password authentication (Basic, Digest, NTLM, Negotiate, kerberos…), file transfer resume, proxy tunneling and a busload of other useful tricks.

OSVersionArchitecturePackageVersionFilename
Fedora36anycurl< 7.82.0UNKNOWN

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

AI Score

8.1

Confidence

Low

EPSS

0.003

Percentile

71.7%