4.3

CVE-2022-32205

Exploit
A malicious server can serve excessive amounts of `Set-Cookie:` headers in a HTTP response to curl and curl < 7.84.0 stores all of them. A sufficiently large amount of (big) cookies make subsequent HTTP requests to this, or other servers to which the cookies match, create requests that become larger than the threshold that curl uses internally to avoid sending crazy large requests (1048576 bytes) and instead returns an error.This denial state might remain for as long as the same cookies are kept, match and haven't expired. Due to cookie matching rules, a server on `foo.example.com` can set cookies that also would match for `bar.example.com`, making it it possible for a "sister server" to effectively cause a denial of service for a sibling site on the same second level domain using this method.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Haxx ≫ Curl Version >= 7.71.0 < 7.84.0
Fedoraproject ≫ Fedora Version 35
Debian ≫ Debian Linux Version 11.0
Netapp ≫ Element Software Version -
Netapp ≫ Hci Management Node Version -
Netapp ≫ Solidfire Version -
Netapp ≫ H300s Firmware Version -
   Netapp ≫ H300s Version -
Netapp ≫ H500s Firmware Version -
   Netapp ≫ H500s Version -
Netapp ≫ H700s Firmware Version -
   Netapp ≫ H700s Version -
Netapp ≫ H410s Firmware Version -
   Netapp ≫ H410s Version -
Apple ≫ macOS Version < 13.0
Siemens ≫ Scalance Sc622-2c Firmware Version < 3.0
   Siemens ≫ Scalance Sc622-2c Version -
Siemens ≫ Scalance Sc626-2c Firmware Version < 3.0
   Siemens ≫ Scalance Sc626-2c Version -
Siemens ≫ Scalance Sc632-2c Firmware Version < 3.0
   Siemens ≫ Scalance Sc632-2c Version -
Siemens ≫ Scalance Sc636-2c Firmware Version < 3.0
   Siemens ≫ Scalance Sc636-2c Version -
Siemens ≫ Scalance Sc642-2c Firmware Version < 3.0
   Siemens ≫ Scalance Sc642-2c Version -
Siemens ≫ Scalance Sc646-2c Firmware Version < 3.0
   Siemens ≫ Scalance Sc646-2c Version -
Splunk ≫ Universal Forwarder Version >= 8.2.0 < 8.2.12
Splunk ≫ Universal Forwarder Version >= 9.0.0 < 9.0.6
Splunk ≫ Universal Forwarder Version 9.1.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 27.08% 0.978
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 4.3 2.8 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
NIST 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CISA-ADP 4.3 2.8 1.4
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
CWE-770 Allocation of Resources Without Limits or Throttling

The product allocates a reusable resource or group of resources on behalf of an actor without imposing any intended restrictions on the size or number of resources that can be allocated.

https://www.debian.org/security/2022/dsa-5197
Third Party Advisory
https://security.gentoo.org/glsa/202212-01
Third Party Advisory
http://seclists.org/fulldisclosure/2022/Oct/28
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2022/Oct/41
Third Party Advisory
Mailing List
https://support.apple.com/kb/HT213488
Third Party Advisory
https://cert-portal.siemens.com/productcert/pdf/ssa-333517.pdf
Patch
Third Party Advisory
https://hackerone.com/reports/1569946
Third Party Advisory
Exploit
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BEV6BR4MTI3CEWK2YU2HQZUW5FAS3FEY/
Third Party Advisory
Mailing List
https://security.netapp.com/advisory/ntap-20220915-0003/
Third Party Advisory