libcurl 7.14.0 through 7.16.3, when built with GnuTLS support, does not check SSL/TLS certificate expiration or activation dates, which allows remote attackers to bypass certain access restrictions.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DSA-1333-1 | New libcurl3-gnutls packages fix certificate handling |
![]() |
EUVD-2007-3548 | libcurl 7.14.0 through 7.16.3, when built with GnuTLS support, does not check SSL/TLS certificate expiration or activation dates, which allows remote attackers to bypass certain access restrictions. |
![]() |
USN-484-1 | curl vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: canonical
Published:
Updated: 2024-08-07T14:21:36.293Z
Reserved: 2007-07-05T00:00:00
Link: CVE-2007-3564

No data.

Status : Deferred
Published: 2007-07-18T17:30:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2007-3564

No data.

No data.