CVE-2021-22897
PoC —CVSS 3.1
5.3 medium
EPSS
3%p87
Published
()
Modified
Description
curl 7.61.0 through 7.76.1 suffers from exposure of data element to wrong session due to a mistake in the code for CURLOPT_SSL_CIPHER_LIST when libcurl is built to use the Schannel TLS library. The selected cipher set was stored in a single "static" variable in the library, which has the surprising side-effect that if an application sets up multiple concurrent transfers, the last one that sets the ciphers will accidentally control the set used by all transfers. In a worst-case scenario, this weakens transport security significantly.
- Vendors
- haxxoraclenetappsiemenssplunk
- Products
- curl, communications cloud native core binding support function, communications cloud native core network function cloud native environment, communications cloud native core network repository function, communications cloud native core network slice selection function, communications cloud native core service communication proxy, essbase, mysql server, cloud backup, solidfire\, enterprise sds \& hci storage node, solidfire \& hci management node, solidfire baseboard management controller firmware
- Weakness
- CWE-840, CWE-668
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.