|
|
Log in / Subscribe / Register

curl: certificate reuse

Package(s):curl CVE #(s):CVE-2016-7141
Created:September 9, 2016 Updated:September 14, 2016
Description:

From the Debian LTS advisory:

It was discovered that libcurl built on top of NSS (Network Security Services) incorrectly re-used client certificates if a certificate from file was used for one TLS connection but no certificate set for a subsequent TLS connection.

Alerts:
Ubuntu USN-3123-1 curl 2016-11-03
Red Hat RHSA-2016:2575-02 curl 2016-11-03
SUSE SUSE-SU-2016:2700-1 curl 2016-11-02
openSUSE openSUSE-SU-2016:2379-1 curl 2016-09-26
Debian-LTS DLA-616-1 curl 2016-09-09
Gentoo 201701-47 curl 2017-01-19
Scientific Linux SLSA-2016:2575-2 curl 2016-12-14

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds