curl vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the curl package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Out-of-bounds Read

<7.58.0-2ubuntu3.24+esm5
  • M
CVE-2024-2398

<7.58.0-2ubuntu3.24+esm4
  • M
CVE-2023-46218

<7.58.0-2ubuntu3.24+esm3
  • L
CVE-2023-38546

<7.58.0-2ubuntu3.24+esm2
  • L
Improper Certificate Validation

<7.58.0-2ubuntu3.24+esm1
  • L
CVE-2023-28322

<7.58.0-2ubuntu3.24+esm1
  • L
Improper Authentication

<7.58.0-2ubuntu3.24
  • L
Arbitrary Code Injection

<7.58.0-2ubuntu3.24
  • L
Improper Authentication

<7.58.0-2ubuntu3.24
  • L
Directory Traversal

<7.58.0-2ubuntu3.24
  • M
Improper Authentication

<7.58.0-2ubuntu3.24
  • M
Allocation of Resources Without Limits or Throttling

<7.58.0-2ubuntu3.23
  • M
Use After Free

<7.58.0-2ubuntu3.22
  • M
Exposure of Resource to Wrong Sphere

<7.58.0-2ubuntu3.21
  • L
CVE-2022-35252

<7.58.0-2ubuntu3.20
  • M
Allocation of Resources Without Limits or Throttling

<7.58.0-2ubuntu3.19
  • M
Out-of-bounds Write

<7.58.0-2ubuntu3.19
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

<7.58.0-2ubuntu3.18
  • M
Improper Certificate Validation

<7.58.0-2ubuntu3.18
  • M
Insufficiently Protected Credentials

<7.58.0-2ubuntu3.17
  • L
Insufficiently Protected Credentials

<7.58.0-2ubuntu3.17
  • M
Missing Authentication for Critical Function

<7.58.0-2ubuntu3.17
  • M
Cleartext Transmission of Sensitive Information

<7.58.0-2ubuntu3.15
  • M
Insufficient Verification of Data Authenticity

<7.58.0-2ubuntu3.15
  • M
Use of Uninitialized Resource

<7.58.0-2ubuntu3.14
  • M
Use of Incorrectly-Resolved Name or Reference

<7.58.0-2ubuntu3.14
  • L
Missing Initialization of Resource

<7.58.0-2ubuntu3.14
  • M
Information Exposure

<7.58.0-2ubuntu3.13
  • L
CVE-2020-8284

<7.58.0-2ubuntu3.12
  • M
Improper Certificate Validation

<7.58.0-2ubuntu3.12
  • M
Out-of-bounds Write

<7.58.0-2ubuntu3.12
  • L
Use After Free

<7.58.0-2ubuntu3.10
  • M
Arbitrary Code Injection

<7.58.0-2ubuntu3.9
  • M
Buffer Overflow

<7.58.0-2ubuntu3.8
  • M
Double Free

<7.58.0-2ubuntu3.8
  • M
Out-of-bounds Write

<7.58.0-2ubuntu3.7
  • M
Out-of-bounds Write

<7.58.0-2ubuntu3.6
  • L
Out-of-bounds Read

<7.58.0-2ubuntu3.6
  • M
Out-of-bounds Read

<7.58.0-2ubuntu3.6
  • M
Out-of-Bounds

<7.58.0-2ubuntu3.5
  • M
Out-of-bounds Read

<7.58.0-2ubuntu3.5
  • M
Integer Overflow or Wraparound

<7.58.0-2ubuntu3.3
  • M
Out-of-bounds Write

<7.58.0-2ubuntu3.2
  • M
Out-of-bounds Write

<7.58.0-2ubuntu3.1
  • M
Out-of-bounds Read

<7.58.0-2ubuntu3.1
  • M
Out-of-bounds Write

<7.58.0-2ubuntu3
  • M
Out-of-bounds Read

<7.58.0-2ubuntu3
  • M
NULL Pointer Dereference

<7.58.0-2ubuntu3