cbcvebase.
CVE-2026-8925
published 2026-07-03

CVE-2026-8925: The curl logic that works with SASL authentication could end up cleaning up the GSASL context *twice* without clearing the pointer in between, making it…

PriorityP352critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.08%
63.9th percentile
The curl logic that works with SASL authentication could end up cleaning up the GSASL context *twice* without clearing the pointer in between, making it `free()` the same pointer twice.

Affected

15 ranges
VendorProductVersion rangeFixed in
curlcurl——
curlcurl——
curlcurl——
curlcurl——
curlcurl——
curlcurl——
curlcurl>= 8.15.0 < 8.16.18.16.1
curlcurl>= 8.17.0 < 8.20.18.20.1
curlcurl>= ab650379a8c25ca952f651476d25b4cdd77bb3fc < 3da249e1f0716c06644ed3522a37a8bf818080123da249e1f0716c06644ed3522a37a8bf81808012
devspacescode-rhel9——
haxxcurl——
haxxcurl>= 8.15.0 < 8.21.08.21.0
rhtparhtpa-trustification-service-rhel9——
rust-langrust——
ubuntucurl——

CVSS provenance

nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vendor_redhat9.8CRITICAL
vendor_ubuntu8.1HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.