<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 20:04:52 +0000</lastBuildDate>
    <item>
      <title>certfr-2015-avi-355 — De multiples vulnérabilités ont été corrigées dans &lt;span
class="textit"&gt;Apple OS X&lt;/span&gt;. Certaines d'entre elles perm…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2015-avi-355</link>
      <description>certfr-2015-avi-355</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2015-avi-355</guid>
    </item>
    <item>
      <title>EUVD-2026-99395</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-99395</link>
      <description>EUVD-2026-99395</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-99395</guid>
    </item>
    <item>
      <title>fkie_cve-2014-3613</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2014-3613</link>
      <description>&lt;p&gt;cURL and libcurl before 7.38.0 does not properly handle IP addresses in cookie domain names, which allows remote attackers to set cookies for or send arbitrary cookies to certain sites, as demonstrated by a site at 192.168.0.1 setting cookies for a site at 127.168.0.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;cURL and libcurl before 7.38.0 does not properly handle IP addresses in cookie domain names, which allows remote attackers to set cookies for or send arbitrary cookies to certain sites, as demonstrated by a site at 192.168.0.1 setting cookies for a site at 127.168.0.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2014-3613</guid>
    </item>
    <item>
      <title>GHSA-gcmw-6qh5-324w</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-gcmw-6qh5-324w</link>
      <description>&lt;p&gt;cURL and libcurl before 7.38.0 does not properly handle IP addresses in cookie domain names, which allows remote attackers to set cookies for or send arbitrary cookies to certain sites, as demonstrated by a site at 192.168.0.1 setting cookies for a site at 127.168.0.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;cURL and libcurl before 7.38.0 does not properly handle IP addresses in cookie domain names, which allows remote attackers to set cookies for or send arbitrary cookies to certain sites, as demonstrated by a site at 192.168.0.1 setting cookies for a site at 127.168.0.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-gcmw-6qh5-324w</guid>
    </item>
    <item>
      <title>gsd-2014-3613</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2014-3613</link>
      <description>gsd-2014-3613</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2014-3613</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:10303-1 — curl-7.51.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:10303-1</link>
      <description>&lt;p&gt;curl-7.51.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;curl-7.51.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:10303-1</guid>
    </item>
    <item>
      <title>RHSA-2015:1254 — Red Hat Security Advisory: curl security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2015:1254</link>
      <description>&lt;p&gt;curl: incorrect handling of IP addresses in cookie domain curl: incorrect handle duplication after COPYPOSTFIELDS curl: URL request injection vulnerability in parseurlandfillconn() curl: re-using authenticated connection when unauthenticated curl: Negotiate not treated as connection-oriented&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;curl: incorrect handling of IP addresses in cookie domain curl: incorrect handle duplication after COPYPOSTFIELDS curl: URL request injection vulnerability in parseurlandfillconn() curl: re-using authenticated connection when unauthenticated curl: Negotiate not treated as connection-oriented&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2015:1254</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2014-3613</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-3613</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: curl&lt;/p&gt;
&lt;p&gt;cURL and libcurl before 7.38.0 does not properly handle IP addresses in cookie domain names, which allows remote attackers to set cookies for or send arbitrary cookies to certain sites, as demonstrated by a site at 192.168.0.1 setting cookies for a site at 127.168.0.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:14.04:LTS: curl&lt;/p&gt;
&lt;p&gt;cURL and libcurl before 7.38.0 does not properly handle IP addresses in cookie domain names, which allows remote attackers to set cookies for or send arbitrary cookies to certain sites, as demonstrated by a site at 192.168.0.1 setting cookies for a site at 127.168.0.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2014-3613</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-1653 — cURL: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1653</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in cURL ausnutzen, um Informationen offenzulegen oder zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in cURL ausnutzen, um Informationen offenzulegen oder zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-1653</guid>
    </item>
  </channel>
</rss>
