VYPR
High severity7.5NVD Advisory· Published Jun 2, 2022· Updated Apr 16, 2026

CVE-2022-27781

CVE-2022-27781

Description

libcurl provides the CURLOPT_CERTINFO option to allow applications torequest details to be returned about a server's certificate chain.Due to an erroneous function, a malicious server could make libcurl built withNSS get stuck in a never-ending busy-loop when trying to retrieve thatinformation.

Affected products

14

Patches

1
462196e6b4a4

Vulnerability mechanics

Generated by null/stub on May 9, 2026. Inputs: CWE entries + fix-commit diffs from this CVE's patches. Citations validated against bundle.

References

5

News mentions

0

No linked articles in our index yet.