Known vulnerabilities in curl - page 3
Vendor:
Fedoraproject
Software:
curl
Software CPE:
cpe:2.3:o:fedoraproject:curl:*:*:*:*:*:fedora:*:*
Website:
https://getfedora.org/
Total vulnerabilities:
126
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
8.15.0-9.fc43
8.18.0-9.fc44
8.15.0-8.fc43
8.18.0-8.fc44
8.21.0~rc2-2.fc45
8.15.0-7.fc43
8.11.1-8.fc42
8.15.0-6.fc43
8.18.0-6.fc44
8.11.1-6.fc42
8.9.1-4.fc41
7.69.1-7.fc32
7.71.1-8.fc33
7.66.0-3.fc31
7.69.1-5.fc32
7.69.1-4.fc32
7.66.0-2.fc31
7.61.1-12.fc29
7.65.3-4.fc30
7.66.0-1.fc31
7.64.0-7.fc30
7.61.1-11.fc29
7.61.1-8.fc29
7.61.1-7.fc29
7.61.1-5.fc29
7.59.0-9.fc28
7.61.1-4.fc29
7.59.0-8.fc28
7.59.0-7.fc28
7.61.1-1.fc29
7.55.1-14.fc27
7.59.0-5.fc28
7.59.0-3.fc28
7.55.1-11.fc27
7.53.1-16.fc26
7.55.1-10.fc27
7.59.0-2.fc28
7.59.0-1.fc28
7.53.1-14.fc26
7.55.1-9.fc27
7.53.1-13.fc26
7.55.1-8.fc27
7.53.1-12.fc26
7.55.1-7.fc27
7.55.1-6.fc27
7.53.1-11.fc26
7.51.0-9.fc25
7.53.1-10.fc26
7.53.1-6.fc26
7.53.1-4.fc26
7.51.0-6.fc25
7.47.1-10.fc24
7.51.0-4.fc25
7.51.0-1.fc25
7.47.1-9.fc24
7.47.1-8.fc24
7.50.3-1.fc25
7.43.0-10.fc23
7.47.1-6.fc24
7.43.0-8.fc23
7.43.0-5.fc23
7.40.0-8.fc22
7.40.0-5.fc22
7.37.0-14.fc21
7.40.0-3.fc22
7.37.0-12.fc21
7.37.0-11.fc21
7.37.0-9.fc21
7.37.0-7.fc21
7.85.0-5.fc37
7.82.0-12.fc36
7.85.0-2.fc37
7.79.1-7.fc35
7.82.0-9.fc36
7.82.0-8.fc36
7.79.1-6.fc35
7.85.0-1.fc37
7.84.0-3.fc37
7.82.0-6.fc36
7.79.1-5.fc35
7.79.1-4.fc35
7.76.1-16.fc34
7.82.0-5.fc36
7.82.0-4.fc36
7.79.1-3.fc35
7.76.1-15.fc34
7.79.1-1.fc35
7.76.1-12.fc34
7.71.1-11.fc33
7.79.0-4.fc35
7.71.1-10.fc33
7.76.1-7.fc34
7.76.1-3.fc34
7.71.1-9.fc33
7.76.0-1.fc34
7.69.1-8.fc32
8.9.1-3.fc41
8.6.0-9.fc40
8.2.1-5.fc39
8.6.0-8.fc40
8.0.1-6.fc38
8.2.1-4.fc39
7.85.0-12.fc37
8.0.1-5.fc38
8.2.1-3.fc39
7.85.0-11.fc37
8.0.1-4.fc38
8.2.1-2.fc39
7.85.0-10.fc37
8.0.1-3.fc38
8.0.1-2.fc38
7.85.0-9.fc37
7.82.0-14.fc36
7.87.0-7.fc38
7.85.0-8.fc37
7.82.0-13.fc36
7.85.0-6.fc37
Vulnerabilities (126)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU72337 - Allocation of Resources Without Limits or Throttling CVE-2023-23916 |
CWE-770 | Medium | 7.82.0-13.fc36, 7.85.0-6.fc37 | 16.02.2023 |
SB2023021668 SB2023021670 SB2023021671 and 89 more |
||
| #VU72336 - Cleartext Transmission of Sensitive Information CVE-2023-23915 |
CWE-319 | Medium | 7.85.0-6.fc37 | 16.02.2023 |
SB2023021668 SB2023021671 SB2023021672 and 26 more |
||
| #VU70457 - Security Features CVE-2022-43551 |
CWE-254 | Medium | 7.82.0-12.fc36, 7.85.0-5.fc37 | 21.12.2022 |
SB2022122102 SB2022122620 SB2023010612 and 32 more |
||
| #VU70456 - Use After Free CVE-2022-43552 |
CWE-416 | Low | 7.82.0-12.fc36, 7.85.0-5.fc37 | 21.12.2022 |
SB2022122102 SB2022122620 SB2022122621 and 66 more |
||
| #VU68749 - Cleartext Transmission of Sensitive Information CVE-2022-42916 |
CWE-319 | Medium | 7.79.1-7.fc35, 7.82.0-9.fc36, 7.85.0-2.fc37 | 26.10.2022 |
SB2022102624 SB2022102662 SB2022102703 and 27 more |
||
| #VU68748 - Double Free CVE-2022-42915 |
CWE-415 | Medium | 7.79.1-7.fc35, 7.82.0-9.fc36, 7.85.0-2.fc37 | 26.10.2022 |
SB2022102624 SB2022102662 SB2022102705 and 26 more |
||
| #VU68747 - Stack-based buffer overflow CVE-2022-35260 |
CWE-121 | Low | 7.79.1-7.fc35, 7.82.0-9.fc36, 7.85.0-2.fc37 | 26.10.2022 |
SB2022102624 SB2022102662 SB2022102705 and 17 more |
||
| #VU68746 - Expected Behavior Violation CVE-2022-32221 |
CWE-440 | Medium | 7.79.1-7.fc35, 7.82.0-9.fc36, 7.85.0-2.fc37 | 26.10.2022 |
SB2022102624 SB2022102643 SB2022102644 and 58 more |
||
| #VU66881 - Improper input validation CVE-2022-35252 |
CWE-20 | Medium | 7.79.1-6.fc35, 7.82.0-8.fc36, 7.85.0-1.fc37 | 31.08.2022 |
SB2022083106 SB2022090108 SB2022090217 and 55 more |
||
| #VU64685 - Improper Verification of Cryptographic Signature CVE-2022-32208 |
CWE-347 | Medium | 7.79.1-5.fc35, 7.82.0-6.fc36 | 27.06.2022 |
SB2022062711 SB2022062724 SB2022062816 and 73 more |
||
| #VU64684 - Incorrect Default Permissions CVE-2022-32207 |
CWE-276 | Low | 7.79.1-5.fc35, 7.82.0-6.fc36 | 27.06.2022 |
SB2022062711 SB2022062724 SB2022062816 and 35 more |
||
| #VU64682 - Resource exhaustion CVE-2022-32206 |
CWE-400 | Medium | 7.79.1-5.fc35, 7.82.0-6.fc36 | 27.06.2022 |
SB2022062711 SB2022062724 SB2022062816 and 80 more |
||
| #VU64681 - Resource exhaustion CVE-2022-32205 |
CWE-400 | Medium | 7.79.1-5.fc35, 7.82.0-6.fc36 | 27.06.2022 |
SB2022062711 SB2022062724 SB2022062816 and 32 more |
||
| #VU63011 - Cleartext Transmission of Sensitive Information CVE-2022-30115 |
CWE-319 | Low | 7.82.0-5.fc36 | 11.05.2022 |
SB2022051112 SB2022051170 SB2022072605 and 11 more |
||
| #VU63009 - Incorrect Implementation of Authentication Algorithm CVE-2022-27782 |
CWE-303 | Medium | 7.76.1-16.fc34, 7.79.1-4.fc35, 7.82.0-5.fc36 | 11.05.2022 |
SB2022051112 SB2022051136 SB2022051170 and 68 more |
||
| #VU63007 - Improper input validation CVE-2022-27780 |
CWE-20 | Low | 7.82.0-5.fc36 | 11.05.2022 |
SB2022051112 SB2022051136 SB2022051170 and 14 more |
||
| #VU63005 - Exposure of sensitive information to an unauthorized actor CVE-2022-27779 |
CWE-200 | Low | 7.82.0-5.fc36 | 11.05.2022 |
SB2022051112 SB2022051170 SB2022072605 and 9 more |
||
| #VU62644 - Exposure of sensitive information to an unauthorized actor CVE-2022-27776 |
CWE-200 | Low | 7.76.1-15.fc34, 7.76.1-16.fc34, 7.79.1-3.fc35, 7.79.1-4.fc35, 7.82.0-4.fc36 | 27.04.2022 |
SB2022042706 SB2022042803 SB2022042904 and 62 more |
||
| #VU62643 - Resource Management Errors CVE-2022-27775 |
CWE-399 | Low | 7.76.1-15.fc34, 7.76.1-16.fc34, 7.79.1-3.fc35, 7.79.1-4.fc35, 7.82.0-4.fc36 | 27.04.2022 |
SB2022042706 SB2022042803 SB2022042904 and 30 more |
||
| #VU62641 - Exposure of sensitive information to an unauthorized actor CVE-2022-27774 |
CWE-200 | Medium | 7.76.1-15.fc34, 7.76.1-16.fc34, 7.79.1-3.fc35, 7.79.1-4.fc35, 7.82.0-4.fc36 | 27.04.2022 |
SB2022042706 SB2022042803 SB2022042904 and 57 more |
Showing elements 41 - 60 out of 126