NA

CVE-2023-32001

Published: 26/07/2023 Updated: 07/11/2023

Vulnerability Summary

Rejected reason: We issued this CVE pre-maturely, as we have subsequently realized that this issue points out a problem that there really is no safe measures around or protections for.

Vulnerability Trend

Vendor Advisories

Debian Bug report logs - #1041812 curl: CVE-2023-32001 Package: src:curl; Maintainer for src:curl is Alessandro Ghedini <ghedo@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sun, 23 Jul 2023 19:27:01 UTC Severity: important Tags: security, upstream Found in version curl/7881-10 Reply ...
It was discovered that Curl performed incorrect file path handling when saving cookies to files, which could lead to the creation or overwriting of files The oldstable distribution (bullseye) is not affected For the stable distribution (bookworm), this problem has been fixed in version 7881-10+deb12u1 We recommend that you upgrade your curl pa ...
Description<!---->A flaw was found in the curl package This race condition modifies the behavior of symbolic link files in affected components which might be followed instead of overwritten when the condition is met, leading to undesired and potentially destructive behaviorA flaw was found in the curl package This race condition modifies the beh ...