5.9

CVE-2023-28321

Exploit
An improper certificate validation vulnerability exists in curl <v8.1.0 in the way it supports matching of wildcard patterns when listed as "Subject Alternative Name" in TLS server certificates. curl can be built to use its own name matching function for TLS rather than one provided by a TLS library. This private wildcard matching function would match IDN (International Domain Name) hosts incorrectly and could as a result accept patterns that otherwise should mismatch. IDN hostnames are converted to puny code before used for certificate checks. Puny coded names always start with `xn--` and should not be allowed to pattern match, but the wildcard check in curl could still check for `x*`, which would match even though the IDN name most likely contained nothing even resembling an `x`.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Haxx ≫ Curl Version < 8.1.0
Debian ≫ Debian Linux Version 10.0
Fedoraproject ≫ Fedora Version 37
Fedoraproject ≫ Fedora Version 38
Netapp ≫ H300s Firmware Version -
   Netapp ≫ H300s Version -
Netapp ≫ H500s Firmware Version -
   Netapp ≫ H500s Version -
Netapp ≫ H700s Firmware Version -
   Netapp ≫ H700s Version -
Netapp ≫ H410s Firmware Version -
   Netapp ≫ H410s Version -
Apple ≫ macOS Version >= 11.0 < 11.7.9
Apple ≫ macOS Version >= 12.0 < 12.6.8
Apple ≫ macOS Version >= 13.0 < 13.5
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.81% 0.767
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5.9 2.2 3.6
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
CISA-ADP 5.9 2.2 3.6
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N
CWE-295 Improper Certificate Validation

The product does not validate, or incorrectly validates, a certificate.

https://support.apple.com/kb/HT213843
Third Party Advisory
https://security.gentoo.org/glsa/202310-12
Third Party Advisory
https://support.apple.com/kb/HT213844
Third Party Advisory
https://support.apple.com/kb/HT213845
Third Party Advisory
http://seclists.org/fulldisclosure/2023/Jul/47
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Jul/48
Third Party Advisory
Mailing List
http://seclists.org/fulldisclosure/2023/Jul/52
Third Party Advisory
Mailing List
https://security.netapp.com/advisory/ntap-20230609-0009/
Third Party Advisory
https://hackerone.com/reports/1950627
Patch
Third Party Advisory
Exploit
https://lists.debian.org/debian-lts-announce/2023/10/msg00016.html
Third Party Advisory
Mailing List
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/F4I75RDGX5ULSSCBE5BF3P5I5SFO7ULQ/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z2LIWHWKOVH24COGGBCVOWDXXIUPKOMK/