Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:10802
HistoryJan 15, 2019 - 8:52 a.m.

Information Disclosure

2019-01-1508:52:26
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

0.008 Low

EPSS

Percentile

81.2%

libcurl is vulnerable to information disclosure. The tailMatch function in cookie.c does not properly matched when sending cookies, allowing remote attackers to steal cookies via a matchign suffix in the domain of the URL.

References