CVE-2007-3564
EPSS 0.64%curl
發布日:2007/7/18修改日:2026/4/28
描述
libcurl 7.14.0 through 7.16.3, when built with GnuTLS support, does not check SSL/TLS certificate expiration or activation dates, which allows remote attackers to bypass certain access restrictions.
受影響套件(2)
- Debian/curlfrom 0, < 7.16.4-1
- Debian/curlfrom 0, < 7.15.5-1etch1