Known vulnerabilities in curl (Debian package) - page 2

Vendor: Debian
Software CPE: cpe:2.3:o:debian:curl_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 39
Public exploits: 1
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting curl (Debian package) curl (Debian package) is affected by 39 known vulnerabilities: 4 high, 20 medium, 15 low Critical High Medium Low

Vulnerabilities (39)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU62643 - Resource Management Errors
CVE-2022-27775
CWE-399 Low
No
No
7.74.0-1.3+deb11u2 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 30 more
#VU56615 - Insufficient Verification of Data Authenticity
CVE-2021-22947
CWE-345 Medium
No
No
7.74.0-1.3+deb11u2 15.09.2021 SB2021091514
SB2021091601
SB2021091715
and 43 more
#VU53587 - Use of Uninitialized Variable
CVE-2021-22898
CWE-457 Medium
No
No
7.74.0-1.3+deb11u2 26.05.2021 SB2021052620
SB2021052711
SB2021060128
and 47 more
#VU51822 - Channel Accessible by Non-Endpoint ('Man-in-the-Middle')
CVE-2021-22890
CWE-300 Medium
No
No
7.64.0-4+deb10u2 31.03.2021 SB2021033111
SB2021040104
SB2021040117
and 15 more
#VU51821 - Exposure of sensitive information to an unauthorized actor
CVE-2021-22876
CWE-200 Medium
No
No
7.64.0-4+deb10u2 31.03.2021 SB2021033111
SB2021040104
SB2021040117
and 31 more
#VU48895 - Improper Check for Certificate Revocation
CVE-2020-8286
CWE-299 Medium
No
No
7.64.0-4+deb10u2 09.12.2020 SB2020120902
SB2020120915
SB2020120929
and 30 more
#VU48894 - Uncontrolled Recursion
CVE-2020-8285
CWE-674 Low
No
No
7.64.0-4+deb10u2 09.12.2020 SB2020120902
SB2020120915
SB2020120928
and 37 more
#VU48893 - Exposure of sensitive information to an unauthorized actor
CVE-2020-8284
CWE-200 Medium
No
No
7.64.0-4+deb10u2 09.12.2020 SB2020120902
SB2020120915
SB2020120927
and 31 more
#VU45794 - Expired pointer dereference
CVE-2020-8231
CWE-825 Low
No
No
7.64.0-4+deb10u2 20.08.2020 SB2020081916
SB2020082001
SB2020081920
and 29 more
#VU29292 - Exposure of sensitive information to an unauthorized actor
CVE-2020-8169
CWE-200 Medium
No
No
7.64.0-4+deb10u2 25.06.2020 SB2020062513
SB2020062514
SB2020063017
and 14 more
#VU29290 - Improper Neutralization of HTTP Headers for Scripting Syntax
CVE-2020-8177
CWE-644 Low
No
No
7.64.0-4+deb10u2 25.06.2020 SB2020062511
SB2020062514
SB2020063002
and 27 more
#VU21059 - Heap-based Buffer Overflow
CVE-2019-5482
CWE-122 Medium
No
No
7.52.1-5+deb9u10 11.09.2019 SB2019091142
SB2019091143
SB2019091201
and 28 more
#VU21058 - Double Free
CVE-2019-5481
CWE-415 Low
No
No
7.52.1-5+deb9u10 11.09.2019 SB2019091142
SB2019091143
SB2019091201
and 12 more
#VU18582 - Heap-based Buffer Overflow
CVE-2019-5436
CWE-122 High
No
No
7.52.1-5+deb9u10 23.05.2019 SB2019052304
SB2019052305
SB2019052306
and 21 more
#VU17458 - Out-of-bounds read
CVE-2019-3823
CWE-125 Low
No
No
7.52.1-5+deb9u9 11.02.2019 SB2019021102
SB2019020715
SB2019020716
and 14 more
#VU17457 - Out-of-bounds read
CVE-2018-16890
CWE-125 Low
No
No
7.52.1-5+deb9u9 11.02.2019 SB2019021102
SB2019020715
SB2019020716
and 13 more
#VU17456 - Stack-based buffer overflow
CVE-2019-3822
CWE-121 High
No
No
7.52.1-5+deb9u9 11.02.2019 SB2019021102
SB2019020715
SB2019020716
and 17 more
#VU15673 - Heap-based Buffer Overflow
CVE-2018-16842
CWE-122 Low
No
No
7.52.1-5+deb9u8 01.11.2018 SB2018110105
SB2018110106
SB2018110302
and 20 more
#VU15671 - Integer overflow
CVE-2018-16839
CWE-190 High
No
No
7.52.1-5+deb9u8 01.11.2018 SB2018110105
SB2018110106
SB2018110302
and 14 more


Showing elements 21 - 40 out of 39