CVE-2007-3564
EPSS 0.64%curl
Published: 7/18/2007Modified: 4/28/2026
Also known as:DEBIAN-CVE-2007-3564
Description
libcurl 7.14.0 through 7.16.3, when built with GnuTLS support, does not check SSL/TLS certificate expiration or activation dates, which allows remote attackers to bypass certain access restrictions.
Affected packages (2)
- Debian/curlfrom 0, < 7.16.4-1
- Debian/curlfrom 0, < 7.15.5-1etch1