Medium severity5.3NVD Advisory· Published Aug 1, 2018· Updated Jun 17, 2026
CVE-2016-8625
CVE-2016-8625
Description
curl before version 7.51.0 uses outdated IDNA 2003 standard to handle International Domain Names and this may lead users to potentially and unknowingly issue network transfer requests to the wrong host.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- The Curl Project/curlv5Range: 7.51.0
Patches
Vulnerability mechanics
References
11- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- curl.haxx.se/CVE-2016-8625.patchnvdPatchVendor Advisory
- curl.haxx.se/docs/adv_20161102K.htmlnvdPatchVendor Advisory
- www.securityfocus.com/bid/94107nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1037192nvdThird Party AdvisoryVDB Entry
- access.redhat.com/errata/RHSA-2018:2486nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2018:3558nvdThird Party Advisory
- security.gentoo.org/glsa/201701-47nvdThird Party Advisory
- www.tenable.com/security/tns-2016-21nvdThird Party Advisory
- lists.apache.org/thread.html/r58af02e294bd07f487e2c64ffc0a29b837db5600e33b6e698b9d696b%40%3Cissues.bookkeeper.apache.org%3Envd
- lists.apache.org/thread.html/rf4c02775860db415b4955778a131c2795223f61cb8c6a450893651e4%40%3Cissues.bookkeeper.apache.org%3Envd
News mentions
0No linked articles in our index yet.