Security Advisory

CVE-2014-0015

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-02-02 00:00:00
Last updated 2024-08-06 08:58:26
Assigner redhat
State PUBLISHED

Description

cURL and libcurl 7.10.6 through 7.34.0, when more than one authentication method is enabled, re-uses NTLM connections, which might allow context-dependent attackers to authenticate as other users via a request.