curl before version 7.52.1 is vulnerable to an uninitialized random in libcurl's internal function that returns a good 32bit random value. Having a weak or virtually non-existent random value makes the operations that use it vulnerable.
Advisories
Source ID Title
EUVD EUVD EUVD-2016-10398 curl before version 7.52.1 is vulnerable to an uninitialized random in libcurl's internal function that returns a good 32bit random value. Having a weak or virtually non-existent random value makes the operations that use it vulnerable.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-06T02:59:02.701Z

Reserved: 2016-11-23T00:00:00

Link: CVE-2016-9594

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-04-23T19:29:00.233

Modified: 2024-11-21T03:01:28.530

Link: CVE-2016-9594

cve-icon Redhat

Severity : Moderate

Publid Date: 2016-12-23T00:00:00Z

Links: CVE-2016-9594 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses