CVE-2021-22897

Published Jun 11, 2021

Last updated 10 days ago

Overview

Description
curl 7.61.0 through 7.76.1 suffers from exposure of data element to wrong session due to a mistake in the code for CURLOPT_SSL_CIPHER_LIST when libcurl is built to use the Schannel TLS library. The selected cipher set was stored in a single "static" variable in the library, which has the surprising side-effect that if an application sets up multiple concurrent transfers, the last one that sets the ciphers will accidentally control the set used by all transfers. In a worst-case scenario, this weakens transport security significantly.
Source
support@hackerone.com
NVD status
Modified
Products
curl, communications_cloud_native_core_binding_support_function, communications_cloud_native_core_network_function_cloud_native_environment, communications_cloud_native_core_network_repository_function, communications_cloud_native_core_network_slice_selection_function, communications_cloud_native_core_service_communication_proxy, essbase, mysql_server, cloud_backup, solidfire\,_enterprise_sds_\&_hci_storage_node, solidfire_\&_hci_management_node, solidfire_baseboard_management_controller_firmware, hci_compute_node_firmware, h300e_firmware, h300s_firmware, h410s_firmware, h500e_firmware, h500s_firmware, h700e_firmware, h700s_firmware, sinec_infrastructure_network_services, universal_forwarder

Risk scores

CVSS 3.1

Type
Primary
Base score
5.3
Impact score
1.4
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Severity
MEDIUM

CVSS 2.0

Type
Primary
Base score
4.3
Impact score
2.9
Exploitability score
8.6
Vector string
AV:N/AC:M/Au:N/C:P/I:N/A:N

Weaknesses

support@hackerone.com
CWE-840
nvd@nist.gov
CWE-668

Social media

Hype score
Not currently trending

Configurations