rpm package
suse/curl&distro=SUSE Linux Enterprise Software Development Kit 12 SP5
pkg:rpm/suse/curl&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5
Vulnerabilities (42)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-8231 | Hig | 7.5 | < 7.60.0-11.6.1 | 7.60.0-11.6.1 | Dec 14, 2020 | Due to use of a dangling pointer, libcurl 7.29.0 through 7.71.1 can use the wrong connection when sending data. | |
| CVE-2020-8177 | Hig | 7.8 | < 7.60.0-11.3.2 | 7.60.0-11.3.2 | Dec 14, 2020 | curl 7.20.0 through 7.70.0 is vulnerable to improper restriction of names for files and other resources that can lead too overwriting a local file when the -J flag is used. |
- affected < 7.60.0-11.6.1fixed 7.60.0-11.6.1
Due to use of a dangling pointer, libcurl 7.29.0 through 7.71.1 can use the wrong connection when sending data.
- affected < 7.60.0-11.3.2fixed 7.60.0-11.3.2
curl 7.20.0 through 7.70.0 is vulnerable to improper restriction of names for files and other resources that can lead too overwriting a local file when the -J flag is used.
Page 3 of 3