CVE-2023-27536Authentication Bypass by Primary Weakness in Libcurl

Severity
5.9MEDIUMNVD
EPSS
0.0%
top 98.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 30

Description

An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to check for changes in the CURLOPT_GSSAPI_DELEGATION option. This vulnerability affects krb5/kerberos/negotiate/GSSAPI transfers and could potentially result in unauthorized access to sensitive information. The safest option is to not reuse connections if the CURLOPT_GSSAPI_DELEGATION option has been chan

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.2 | Impact: 3.6

Affected Packages4 packages

NVDhaxx/libcurl7.22.07.88.1
NVDsplunk/universal_forwarder8.2.08.2.12+2
Debianhaxx/curl< 7.74.0-1.3+deb11u8+3
CVEListV5https/github.com_curl_curlFixed in 8.0.0

Also affects: Ontap 9, Debian Linux 10.0, Fedora 36

🔴Vulnerability Details

3
OSV
CVE-2023-27536: An authentication bypass vulnerability exists libcurl <82023-03-30
CVEList
CVE-2023-27536: An authentication bypass vulnerability exists libcurl <82023-03-30
GHSA
GHSA-4f9f-mpmj-4c52: An authentication bypass vulnerability exists libcurl <82023-03-30

📋Vendor Advisories

5
Ubuntu
curl vulnerabilities2023-03-27
Ubuntu
curl vulnerabilities2023-03-20
Red Hat
curl: GSS delegation too eager connection re-use2023-03-20
Microsoft
An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously established connections with incorrect user permissions due to a failure to chec2023-03-14
Debian
CVE-2023-27536: curl - An authentication bypass vulnerability exists libcurl <8.0.0 in the connection r...2023

💬Community

2
HackerOne
CVE-2023-27536: GSS delegation too eager connection re-use2023-03-22
HackerOne
CVE-2023-27536: GSS delegation too eager connection re-use2023-03-20
CVE-2023-27536 — Haxx Libcurl vulnerability | cvebase