Due to use of a dangling pointer, libcurl 7.29.0 through 7.71.1 can use the wrong connection when sending data.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DLA-2382-1 | curl security update |
![]() |
DSA-4881-1 | curl security update |
![]() |
USN-4466-1 | curl vulnerability |
![]() |
USN-4466-2 | curl vulnerability |
![]() |
USN-4665-1 | curl vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2024-08-04T09:56:27.965Z
Reserved: 2020-01-28T00:00:00
Link: CVE-2020-8231

No data.

Status : Modified
Published: 2020-12-14T20:15:13.590
Modified: 2024-11-21T05:38:33.127
Link: CVE-2020-8231


No data.