Unknown
CVE-2021-22924
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2021-22924
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
libcurl keeps previously used connections in a connection pool for subsequenttransfers to reuse, if one of them matches the setup.Due to errors in the logic, the config matching function did not take ‘issuercert’ into account and it compared the involved paths case insensitively,which could lead to libcurl reusing wrong connections.File paths are, or can be, case sensitive on many systems but not all, and caneven vary depending on used file systems.The comparison also didn’t include the ‘issuer cert’ which a transfer can setto qualify how to verify the server certificate.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
- debian,
- fedoraproject,
- haxx,
- netapp,
- oracle,
- siemens,
- splunk
Products
- cloud backup -,
- clustered data ontap -,
- debian linux 10.0,
- debian linux 11.0,
- debian linux 9.0,
- fedora 33,
- libcurl,
- logo! cmr2020 firmware,
- logo! cmr2040 firmware,
- mysql server,
- peoplesoft enterprise peopletools 8.57,
- peoplesoft enterprise peopletools 8.58,
- peoplesoft enterprise peopletools 8.59,
- ruggedcomrm 1224 lte firmware,
- scalance m804pb firmware,
- scalance m812-1 firmware,
- scalance m816-1 firmware,
- scalance m826-2 firmware,
- scalance m874-2 firmware,
- scalance m874-3 firmware,
- scalance m876-3 firmware,
- scalance m876-4 firmware,
- scalance mum856-1 firmware,
- scalance s615 firmware,
- simatic cp 1543-1 firmware,
- simatic cp 1545-1 firmware,
- simatic rtu 3041c firmware,
- simatic rtu3010c firmware,
- simatic rtu3030c firmware,
- simatic rtu3031c firmware,
- sinec infrastructure network services,
- sinema remote connect,
- sinema remote connect server,
- siplus net cp 1543-1 firmware,
- solidfire & hci management node -,
- solidfire baseboard management controller firmware -,
- universal forwarder,
- universal forwarder 9.1.0
References
Advisory
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: