A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`.
References
| Link | Resource |
|---|---|
| https://hackerone.com/reports/1553598 | Exploit Third Party Advisory |
| https://security.netapp.com/advisory/ntap-20220609-0009/ | Third Party Advisory |
| https://www.oracle.com/security-alerts/cpujul2022.html | |
| https://security.netapp.com/advisory/ntap-20220729-0004/ |
Configurations
Information
Published : 2022-06-02 14:15
Updated : 2022-07-29 20:15
NVD link : CVE-2022-27778
Mitre link : CVE-2022-27778
JSON object : View
Products Affected
haxx
- curl
CWE
CWE-706
Use of Incorrectly-Resolved Name or Reference
