..
Click anywhere to stop
Click anywhere to stop
Detect date
?
|
05/18/2016 |
Severity
?
|
Warning |
Description
|
An improper TLS connections handling was found in cURL. By exploiting this vulnerability malicious users can bypass sec. This vulnerability can be exploited remotely via TLS certificate manipulations. Technical details Libcurl affected only if mbedTLS or PolarSSL as TLS backend. |
Affected products
|
cURL and libcurl versions earlier than 7.49.0 |
Solution
|
Update to the latest version |
Original advisories
|
|
Impacts
?
|
SB [?] SUI [?] |
Related products
|
cURL |
CVE-IDS
?
|
|
Find out the statistics of the vulnerabilities spreading in your region |