Vulnerabilities in curl 8.9.0
curl version 8.9.0 was released on July 24 2024
It has the following 3 published security problems.
Flaw | From version | To and including |
---|---|---|
HSTS subdomain overwrites parent cache entry | 7.74.0 | 8.10.1 |
OCSP stapling bypass with GnuTLS | 7.41.0 | 8.9.1 |
ASN.1 date parser overread | 7.32.0 | 8.9.0 |
Futher details
CVE data for 8.9.0 provided as JSON.
See vulnerability summary for the previous release: 8.8.0 or the subsequent release: 8.9.1