Known vulnerabilities in curl - page 3
Vendor:
SUSE
Software:
curl
Software CPE:
cpe:2.3:o:suse:curl:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
90
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.2
Breakdown by Severity Chart
8.14.1-150700.7.23.1
8.14.1-150400.5.86.1
8.14.1-150600.4.46.1
8.14.1-150700.7.20.1
8.0.1-11.123.1
8.14.1-150700.7.17.1
8.14.1-150600.4.43.1
8.14.1-150400.5.83.1
8.0.1-11.120.1
8.14.1-150400.5.80.1
8.14.1-150700.7.14.1
8.14.1-150600.4.40.1
8.14.1-150200.4.103.1
8.14.1-150400.5.77.1
8.0.1-11.117.1
8.0.1-11.114.1
8.14.1-150200.4.100.1
8.14.1-150600.4.37.1
8.0.1-11.111.1
8.14.1-150700.7.8.1
8.14.1-150200.4.97.1
8.14.1-150600.4.34.1
8.14.1-150400.5.72.1
8.14.1-150700.7.5.1
8.14.1-150600.4.31.1
8.14.1-150200.4.94.1
8.14.1-150700.7.2.1
8.14.1-150200.4.91.1
8.14.1-150400.5.69.1
8.14.1-150600.4.28.1
8.0.1-11.108.1
7.66.0-150200.4.84.1
8.0.1-11.105.1
8.0.1-150400.5.62.1
8.6.0-150600.4.21.1
8.0.1-150400.5.59.1
8.0.1-11.101.1
7.66.0-150200.4.81.1
8.6.0-150600.4.15.1
8.0.1-11.98.1
8.0.1-150400.5.56.1
8.6.0-150600.4.12.1
8.0.1-150400.5.53.2
8.6.0-150600.4.9.2
8.0.1-11.95.2
8.0.1-150400.5.50.1
8.6.0-150600.4.6.1
8.0.1-11.92.1
7.66.0-150200.4.78.1
8.0.1-150400.5.47.1
8.0.1-11.89.1
7.66.0-150200.4.75.1
8.6.0-150600.4.3.1
7.66.0-150200.4.72.1
8.0.1-150400.5.44.1
8.0.1-11.86.2
7.66.0-150200.4.69.1
7.66.0-150200.4.63.1
7.60.0-150000.56.1
8.0.1-11.80.1
8.0.1-150400.5.36.1
8.0.1-11.74.1
8.0.1-150400.5.32.1
7.66.0-150200.4.60.1
8.0.1-150400.5.29.1
8.0.1-11.71.1
8.0.1-150400.5.26.1
8.0.1-11.68.1
7.66.0-150200.4.57.1
7.60.0-4.56.1
8.0.1-150400.5.23.1
8.0.1-11.65.2
7.60.0-150000.51.1
7.66.0-150200.4.52.1
7.79.1-150400.5.18.1
7.60.0-11.60.1
7.66.0-150200.4.33.1
7.60.0-11.40.2
7.60.0-11.37.1
7.66.0-150200.4.30.1
7.79.1-150400.5.15.1
7.60.0-11.55.1
7.66.0-150200.4.45.1
7.60.0-11.52.1
7.79.1-150400.5.12.1
7.79.1-150400.5.9.1
7.66.0-150200.4.42.1
7.60.0-4.43.1
7.60.0-150000.38.1
7.37.0-37.85.1
7.60.0-11.49.1
7.60.0-11.46.1
7.66.0-150200.4.39.1
7.79.1-150400.5.6.1
7.60.0-150000.33.1
7.60.0-4.38.1
7.37.0-37.79.1
7.66.0-150200.4.36.1
7.79.1-150400.5.3.1
7.60.0-4.30.1
7.60.0-11.28.1
7.60.0-25.1
7.60.0-11.23.1
7.60.0-3.47.1
7.66.0-4.22.1
7.60.0-4.25.1
7.37.0-70.66.1
7.60.0-3.42.1
7.60.0-4.20.1
7.60.0-11.18.1
7.66.0-4.17.1
7.60.0-11.15.1
7.66.0-4.14.1
Vulnerabilities (90)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU95131 - Out-of-bounds read CVE-2024-7264 |
CWE-125 | Medium | 7.66.0-150200.4.75.1, 7.66.0-150200.4.78.1, 8.0.1-11.89.1, 8.0.1-150400.5.47.1, 8.6.0-150600.4.3.1 | 01.08.2024 |
SB2024080110 SB2024080117 SB20240805104 and 43 more |
||
| #VU94715 - Double Free CVE-2024-6197 |
CWE-415 | Medium | 8.6.0-150600.4.3.1 | 24.07.2024 |
SB2024072431 SB2024080568 SB20240806402 and 11 more |
||
| #VU87850 - Missing Release of Resource after Effective Lifetime CVE-2024-2398 |
CWE-772 | Medium | 7.66.0-150200.4.69.1, 8.0.1-11.86.2, 8.0.1-150400.5.44.1 | 27.03.2024 |
SB2024032713 SB2024032740 SB2024032744 and 106 more |
||
| #VU87846 - Improper input validation CVE-2024-2004 |
CWE-20 | Low | 7.66.0-150200.4.69.1, 8.0.1-11.86.2, 8.0.1-150400.5.44.1 | 27.03.2024 |
SB2024032713 SB2024032740 SB2024032748 and 28 more |
||
| #VU83900 - Exposure of sensitive information to an unauthorized actor CVE-2023-46218 |
CWE-200 | Low | 7.60.0-150000.56.1, 7.66.0-150200.4.63.1, 8.0.1-11.80.1, 8.0.1-150400.5.36.1 | 06.12.2023 |
SB2023120612 SB2023120644 SB2023120661 and 87 more |
||
| #VU83899 - Missing Encryption of Sensitive Data CVE-2023-46219 |
CWE-311 | Medium | 8.0.1-11.80.1, 8.0.1-150400.5.36.1 | 06.12.2023 |
SB2023120612 SB2023120644 SB2023120661 and 31 more |
||
| #VU81865 - Heap-based Buffer Overflow CVE-2023-38545 |
CWE-122 | High | 8.0.1-11.74.1, 8.0.1-150400.5.32.1 | 11.10.2023 |
SB2023101129 SB2023101135 SB2023101149 and 99 more |
||
| #VU81863 - External Control of File Name or Path CVE-2023-38546 |
CWE-73 | Low | 7.60.0-150000.56.1, 7.66.0-150200.4.60.1, 8.0.1-11.74.1, 8.0.1-150400.5.32.1 | 11.10.2023 |
SB2023101129 SB2023101135 SB2023101149 and 125 more |
||
| #VU80732 - Resource exhaustion CVE-2023-38039 |
CWE-400 | Medium | 8.0.1-11.71.1, 8.0.1-150400.5.29.1 | 13.09.2023 |
SB2023091327 SB2023091363 SB2023091402 and 33 more |
||
| #VU78540 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2023-32001 |
CWE-367 | Low | 8.0.1-11.68.1, 8.0.1-150400.5.26.1 | 21.07.2023 |
SB2023072135 SB2023072137 SB2023072138 and 17 more |
||
| #VU76238 - Expected Behavior Violation CVE-2023-28322 |
CWE-440 | Medium | 7.60.0-4.56.1, 7.60.0-150000.51.1, 7.66.0-150200.4.57.1, 8.0.1-11.65.2, 8.0.1-150400.5.23.1 | 17.05.2023 |
SB2023051752 SB2023051760 SB2023051761 and 88 more |
||
| #VU76237 - Improper Certificate Validation CVE-2023-28321 |
CWE-295 | Medium | 7.60.0-4.56.1, 7.60.0-150000.51.1, 7.66.0-150200.4.57.1, 8.0.1-11.65.2, 8.0.1-150400.5.23.1 | 17.05.2023 |
SB2023051752 SB2023051760 SB2023051761 and 99 more |
||
| #VU76235 - Improper Synchronization CVE-2023-28320 |
CWE-662 | Low | 7.60.0-4.56.1, 7.60.0-150000.51.1, 7.66.0-150200.4.57.1, 8.0.1-11.65.2, 8.0.1-150400.5.23.1 | 17.05.2023 |
SB2023051752 SB2023051760 SB2023051761 and 28 more |
||
| #VU73831 - Exposure of sensitive information to an unauthorized actor CVE-2023-27538 |
CWE-200 | Medium | 7.60.0-4.56.1, 7.60.0-11.60.1, 7.60.0-150000.51.1, 7.66.0-150200.4.52.1, 7.79.1-150400.5.18.1 | 20.03.2023 |
SB2023032027 SB2023032028 SB2023032044 and 40 more |
||
| #VU73829 - State Issues CVE-2023-27536 |
CWE-371 | Medium | 7.60.0-4.56.1, 7.60.0-11.60.1, 7.60.0-150000.51.1, 7.66.0-150200.4.52.1, 7.79.1-150400.5.18.1 | 20.03.2023 |
SB2023032027 SB2023032028 SB2023032044 and 80 more |
||
| #VU73828 - State Issues CVE-2023-27535 |
CWE-371 | Low | 7.60.0-4.56.1, 7.60.0-11.60.1, 7.60.0-150000.51.1, 7.66.0-150200.4.52.1, 7.79.1-150400.5.18.1 | 20.03.2023 |
SB2023032027 SB2023032028 SB2023032044 and 84 more |
||
| #VU73827 - Improper input validation CVE-2023-27534 |
CWE-20 | Low | 7.60.0-4.56.1, 7.60.0-11.60.1, 7.60.0-150000.51.1, 7.66.0-150200.4.52.1, 7.66.0-150200.4.72.1, 7.79.1-150400.5.18.1, 8.0.1-11.117.1 | 20.03.2023 |
SB2023032027 SB2023032028 SB2023032044 and 45 more |
||
| #VU73826 - Improper input validation CVE-2023-27533 |
CWE-20 | Low | 7.60.0-4.56.1, 7.60.0-11.60.1, 7.60.0-150000.51.1, 7.66.0-150200.4.52.1, 7.79.1-150400.5.18.1 | 20.03.2023 |
SB2023032027 SB2023032028 SB2023032044 and 42 more |
||
| #VU72337 - Allocation of Resources Without Limits or Throttling CVE-2023-23916 |
CWE-770 | Medium | 7.60.0-4.56.1, 7.60.0-11.55.1, 7.60.0-150000.51.1, 7.66.0-150200.4.52.1, 7.79.1-150400.5.15.1 | 16.02.2023 |
SB2023021668 SB2023021670 SB2023021671 and 89 more |
||
| #VU70456 - Use After Free CVE-2022-43552 |
CWE-416 | Low | 7.60.0-4.56.1, 7.60.0-11.52.1, 7.60.0-150000.51.1, 7.66.0-150200.4.45.1, 7.79.1-150400.5.12.1 | 21.12.2022 |
SB2022122102 SB2022122620 SB2022122621 and 66 more |
Showing elements 41 - 60 out of 90