CVE-2020-8169 log
Source |
|
Severity | Medium |
Remote | Yes |
Type | Information disclosure |
Description | An issue has been found in libcurl from7.62.0 up to and including 7.70.0, which can be tricked to prepend a part of the password to the host name before it resolves it, potentially leaking the partial password over the network and to the DNS server(s). |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-1194 | curl | 7.70.0-1 | 7.71.0-1 | High | Fixed |
References |
---|
https://curl.haxx.se/docs/CVE-2020-8169.html |