CVE-2025-10966Key Exchange without Entity Authentication in Curl

Severity
4.3MEDIUMNVD
EPSS
0.0%
top 94.81%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 7
Latest updateNov 11

Description

curl's code for managing SSH connections when SFTP was done using the wolfSSH powered backend was flawed and missed host verification mechanisms. This prevents curl from detecting MITM attackers and more.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages4 packages

NVDhaxx/curl7.69.08.17.0
Alpinehaxx/curl< 8.17.0-r0
Debianhaxx/curl< 8.17.0~rc2-1
CVEListV5curl/curl8.16.08.16.0+52

Patches

🔴Vulnerability Details

4
GHSA
GHSA-5gff-h54g-38r2: curl's code for managing SSH connections when SFTP was done using the wolfSSH powered backend was flawed and missed host verification mechanisms2025-11-07
OSV
CVE-2025-10966: curl's code for managing SSH connections when SFTP was done using the wolfSSH powered backend was flawed and missed host verification mechanisms2025-11-07
OSV
CVE-2025-10966: curl's code for managing SSH connections when SFTP was done using the wolfSSH powered backend was flawed and missed host verification mechanisms2025-11-07
CVEList
missing SFTP host verification with wolfSSH2025-11-07

📋Vendor Advisories

3
Microsoft
missing SFTP host verification with wolfSSH2025-11-11
Red Hat
curl: Curl missing SFTP host verification with wolfSSH backend2025-11-07
Debian
CVE-2025-10966: curl - curl's code for managing SSH connections when SFTP was done using the wolfSSH po...2025

💬Community

1
HackerOne
CVE-2025-10966: missing SFTP host verification with wolfSSH2025-11-05
CVE-2025-10966 — Haxx Curl vulnerability | cvebase