5.9
CVE-2021-22947
- EPSS 3.01%
- Veröffentlicht 29.09.2021 20:15:08
- Zuletzt bearbeitet 16.04.2026 15:16:44
- Erkennungen
When curl >= 7.20.0 and <= 7.78.0 connects to an IMAP or POP3 server to retrieve data using STARTTLS to upgrade to TLS security, the server can respond and send back multiple responses at once that curl caches. curl would then upgrade to TLS but not flush the in-queue of cached responses but instead continue using and trustingthe responses it got *before* the TLS handshake as if they were authenticated.Using this flaw, it allows a Man-In-The-Middle attacker to first inject the fake responses, then pass-through the TLS traffic from the legitimate server and trick curl into sending data back to the user thinking the attacker's injected data comes from the TLS-protected server.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Fedoraproject ≫ Fedora Version 33
Fedoraproject ≫ Fedora Version 35
Debian ≫ Debian Linux Version 9.0
Debian ≫ Debian Linux Version 10.0
Debian ≫ Debian Linux Version 11.0
Netapp ≫ Cloud Backup Version -
Netapp ≫ Clustered Data Ontap Version -
Netapp ≫ H300s Firmware Version -
Netapp ≫ H500s Firmware Version -
Netapp ≫ H700s Firmware Version -
Netapp ≫ H300e Firmware Version -
Netapp ≫ H500e Firmware Version -
Netapp ≫ H700e Firmware Version -
Netapp ≫ H410s Firmware Version -
Oracle ≫ Communications Cloud Native Core Binding Support Function Version 1.11.0
Oracle ≫ Communications Cloud Native Core Network Repository Function Version 1.15.0
Oracle ≫ Communications Cloud Native Core Network Repository Function Version 1.15.1
Oracle ≫ Communications Cloud Native Core Service Communication Proxy Version 1.15.0
Oracle ≫ Mysql Server Version >= 5.7.0 <= 5.7.35
Oracle ≫ Mysql Server Version >= 8.0.0 <= 8.0.26
Oracle ≫ Peoplesoft Enterprise Peopletools Version 8.57
Oracle ≫ Peoplesoft Enterprise Peopletools Version 8.58
Oracle ≫ Peoplesoft Enterprise Peopletools Version 8.59
Siemens ≫ Sinec Infrastructure Network Services Version < 1.0.1.1
Oracle ≫ Commerce Guided Search Version 11.3.2
Oracle ≫ Communications Cloud Native Core Binding Support Function Version 22.1.3
Oracle ≫ Communications Cloud Native Core Console Version 22.2.0
Oracle ≫ Communications Cloud Native Core Network Repository Function Version 22.1.2
Oracle ≫ Communications Cloud Native Core Network Repository Function Version 22.2.0
Oracle ≫ Communications Cloud Native Core Security Edge Protection Proxy Version 22.1.1
Splunk ≫ Universal Forwarder Version >= 8.2.0 < 8.2.12
Splunk ≫ Universal Forwarder Version >= 9.0.0 < 9.0.6
Splunk ≫ Universal Forwarder Version 9.1.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.01% | 0.86 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5.9 | 2.2 | 3.6 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
|
| NIST | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
| CISA-ADP | 5.9 | 2.2 | 3.6 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
|
CWE-345 Insufficient Verification of Data Authenticity
The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.
https://www.oracle.com/security-alerts/cpuapr2022.html
https://www.oracle.com/security-alerts/cpujan2022.html
https://www.oracle.com/security-alerts/cpuoct2021.html
https://www.oracle.com/security-alerts/cpujul2022.html
https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf
https://lists.debian.org/debian-lts-announce/2022/08/msg00017.html
https://www.debian.org/security/2022/dsa-5197
http://seclists.org/fulldisclosure/2022/Mar/29
https://support.apple.com/kb/HT213183
https://security.gentoo.org/glsa/202212-01
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/APOAK4X73EJTAPTSVT7IRVDMUWVXNWGD/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RWLEC6YVEM2HWUBX67SDGPSY4CQB72OE/
https://security.netapp.com/advisory/ntap-20211029-0003/
https://lists.debian.org/debian-lts-announce/2021/09/msg00022.html
https://hackerone.com/reports/1334763