Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-22898

curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the server, resulting in potentially revealing sensitive internal information to the server using a clear-text network protocol.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 37.6%
CVSS Severity
CVSS v3 Score 3.1
CVSS v2 Score 2.6
References
Products affected by CVE-2021-22898
  • Haxx » Curl » Version: 7.10
    cpe:2.3:a:haxx:curl:7.10
  • Haxx » Curl » Version: 7.10.1
    cpe:2.3:a:haxx:curl:7.10.1
  • Haxx » Curl » Version: 7.10.2
    cpe:2.3:a:haxx:curl:7.10.2
  • Haxx » Curl » Version: 7.10.3
    cpe:2.3:a:haxx:curl:7.10.3
  • Haxx » Curl » Version: 7.10.4
    cpe:2.3:a:haxx:curl:7.10.4
  • Haxx » Curl » Version: 7.10.5
    cpe:2.3:a:haxx:curl:7.10.5
  • Haxx » Curl » Version: 7.10.6
    cpe:2.3:a:haxx:curl:7.10.6
  • Haxx » Curl » Version: 7.10.7
    cpe:2.3:a:haxx:curl:7.10.7
  • Haxx » Curl » Version: 7.10.8
    cpe:2.3:a:haxx:curl:7.10.8
  • Haxx » Curl » Version: 7.11.0
    cpe:2.3:a:haxx:curl:7.11.0
  • Haxx » Curl » Version: 7.11.1
    cpe:2.3:a:haxx:curl:7.11.1
  • Haxx » Curl » Version: 7.11.2
    cpe:2.3:a:haxx:curl:7.11.2
  • Haxx » Curl » Version: 7.12.0
    cpe:2.3:a:haxx:curl:7.12.0
  • Haxx » Curl » Version: 7.12.1
    cpe:2.3:a:haxx:curl:7.12.1
  • Haxx » Curl » Version: 7.12.2
    cpe:2.3:a:haxx:curl:7.12.2
  • Haxx » Curl » Version: 7.12.3
    cpe:2.3:a:haxx:curl:7.12.3
  • Haxx » Curl » Version: 7.13.0
    cpe:2.3:a:haxx:curl:7.13.0
  • Haxx » Curl » Version: 7.13.1
    cpe:2.3:a:haxx:curl:7.13.1
  • Haxx » Curl » Version: 7.13.2
    cpe:2.3:a:haxx:curl:7.13.2
  • Haxx » Curl » Version: 7.14.0
    cpe:2.3:a:haxx:curl:7.14.0
  • Haxx » Curl » Version: 7.14.1
    cpe:2.3:a:haxx:curl:7.14.1
  • Haxx » Curl » Version: 7.15.0
    cpe:2.3:a:haxx:curl:7.15.0
  • Haxx » Curl » Version: 7.15.1
    cpe:2.3:a:haxx:curl:7.15.1
  • Haxx » Curl » Version: 7.15.2
    cpe:2.3:a:haxx:curl:7.15.2
  • Haxx » Curl » Version: 7.15.3
    cpe:2.3:a:haxx:curl:7.15.3
  • Haxx » Curl » Version: 7.15.4
    cpe:2.3:a:haxx:curl:7.15.4
  • Haxx » Curl » Version: 7.15.5
    cpe:2.3:a:haxx:curl:7.15.5
  • Haxx » Curl » Version: 7.16.0
    cpe:2.3:a:haxx:curl:7.16.0
  • Haxx » Curl » Version: 7.16.1
    cpe:2.3:a:haxx:curl:7.16.1
  • Haxx » Curl » Version: 7.16.2
    cpe:2.3:a:haxx:curl:7.16.2
  • Haxx » Curl » Version: 7.16.3
    cpe:2.3:a:haxx:curl:7.16.3
  • Haxx » Curl » Version: 7.16.4
    cpe:2.3:a:haxx:curl:7.16.4
  • Haxx » Curl » Version: 7.17.0
    cpe:2.3:a:haxx:curl:7.17.0
  • Haxx » Curl » Version: 7.17.1
    cpe:2.3:a:haxx:curl:7.17.1
  • Haxx » Curl » Version: 7.18.0
    cpe:2.3:a:haxx:curl:7.18.0
  • Haxx » Curl » Version: 7.18.1
    cpe:2.3:a:haxx:curl:7.18.1
  • Haxx » Curl » Version: 7.18.2
    cpe:2.3:a:haxx:curl:7.18.2
  • Haxx » Curl » Version: 7.19.0
    cpe:2.3:a:haxx:curl:7.19.0
  • Haxx » Curl » Version: 7.19.1
    cpe:2.3:a:haxx:curl:7.19.1
  • Haxx » Curl » Version: 7.19.2
    cpe:2.3:a:haxx:curl:7.19.2
  • Haxx » Curl » Version: 7.19.3
    cpe:2.3:a:haxx:curl:7.19.3
  • Haxx » Curl » Version: 7.19.4
    cpe:2.3:a:haxx:curl:7.19.4
  • Haxx » Curl » Version: 7.19.5
    cpe:2.3:a:haxx:curl:7.19.5
  • Haxx » Curl » Version: 7.19.6
    cpe:2.3:a:haxx:curl:7.19.6
  • Haxx » Curl » Version: 7.19.7
    cpe:2.3:a:haxx:curl:7.19.7
  • Haxx » Curl » Version: 7.19.7-53
    cpe:2.3:a:haxx:curl:7.19.7-53
  • Haxx » Curl » Version: 7.20.0
    cpe:2.3:a:haxx:curl:7.20.0
  • Haxx » Curl » Version: 7.20.1
    cpe:2.3:a:haxx:curl:7.20.1
  • Haxx » Curl » Version: 7.21.0
    cpe:2.3:a:haxx:curl:7.21.0
  • Haxx » Curl » Version: 7.21.1
    cpe:2.3:a:haxx:curl:7.21.1
  • Haxx » Curl » Version: 7.21.2
    cpe:2.3:a:haxx:curl:7.21.2
  • Haxx » Curl » Version: 7.21.3
    cpe:2.3:a:haxx:curl:7.21.3
  • Haxx » Curl » Version: 7.21.4
    cpe:2.3:a:haxx:curl:7.21.4
  • Haxx » Curl » Version: 7.21.5
    cpe:2.3:a:haxx:curl:7.21.5
  • Haxx » Curl » Version: 7.21.6
    cpe:2.3:a:haxx:curl:7.21.6
  • Haxx » Curl » Version: 7.21.7
    cpe:2.3:a:haxx:curl:7.21.7
  • Haxx » Curl » Version: 7.22.0
    cpe:2.3:a:haxx:curl:7.22.0
  • Haxx » Curl » Version: 7.23.0
    cpe:2.3:a:haxx:curl:7.23.0
  • Haxx » Curl » Version: 7.23.1
    cpe:2.3:a:haxx:curl:7.23.1
  • Haxx » Curl » Version: 7.24.0
    cpe:2.3:a:haxx:curl:7.24.0
  • Haxx » Curl » Version: 7.25.0
    cpe:2.3:a:haxx:curl:7.25.0
  • Haxx » Curl » Version: 7.26.0
    cpe:2.3:a:haxx:curl:7.26.0
  • Haxx » Curl » Version: 7.27.0
    cpe:2.3:a:haxx:curl:7.27.0
  • Haxx » Curl » Version: 7.28.0
    cpe:2.3:a:haxx:curl:7.28.0
  • Haxx » Curl » Version: 7.28.1
    cpe:2.3:a:haxx:curl:7.28.1
  • Haxx » Curl » Version: 7.29.0
    cpe:2.3:a:haxx:curl:7.29.0
  • Haxx » Curl » Version: 7.30.0
    cpe:2.3:a:haxx:curl:7.30.0
  • Haxx » Curl » Version: 7.31.0
    cpe:2.3:a:haxx:curl:7.31.0
  • Haxx » Curl » Version: 7.32.0
    cpe:2.3:a:haxx:curl:7.32.0
  • Haxx » Curl » Version: 7.33.0
    cpe:2.3:a:haxx:curl:7.33.0
  • Haxx » Curl » Version: 7.34.0
    cpe:2.3:a:haxx:curl:7.34.0
  • Haxx » Curl » Version: 7.35.0
    cpe:2.3:a:haxx:curl:7.35.0
  • Haxx » Curl » Version: 7.36.0
    cpe:2.3:a:haxx:curl:7.36.0
  • Haxx » Curl » Version: 7.37.0
    cpe:2.3:a:haxx:curl:7.37.0
  • Haxx » Curl » Version: 7.37.1
    cpe:2.3:a:haxx:curl:7.37.1
  • Haxx » Curl » Version: 7.38.0
    cpe:2.3:a:haxx:curl:7.38.0
  • Haxx » Curl » Version: 7.39.0
    cpe:2.3:a:haxx:curl:7.39.0
  • Haxx » Curl » Version: 7.40.0
    cpe:2.3:a:haxx:curl:7.40.0
  • Haxx » Curl » Version: 7.41.0
    cpe:2.3:a:haxx:curl:7.41.0
  • Haxx » Curl » Version: 7.42.0
    cpe:2.3:a:haxx:curl:7.42.0
  • Haxx » Curl » Version: 7.42.1
    cpe:2.3:a:haxx:curl:7.42.1
  • Haxx » Curl » Version: 7.43.0
    cpe:2.3:a:haxx:curl:7.43.0
  • Haxx » Curl » Version: 7.44.0
    cpe:2.3:a:haxx:curl:7.44.0
  • Haxx » Curl » Version: 7.45.0
    cpe:2.3:a:haxx:curl:7.45.0
  • Haxx » Curl » Version: 7.46.0
    cpe:2.3:a:haxx:curl:7.46.0
  • Haxx » Curl » Version: 7.47.0
    cpe:2.3:a:haxx:curl:7.47.0
  • Haxx » Curl » Version: 7.47.1
    cpe:2.3:a:haxx:curl:7.47.1
  • Haxx » Curl » Version: 7.48.0
    cpe:2.3:a:haxx:curl:7.48.0
  • Haxx » Curl » Version: 7.49.0
    cpe:2.3:a:haxx:curl:7.49.0
  • Haxx » Curl » Version: 7.49.1
    cpe:2.3:a:haxx:curl:7.49.1
  • Haxx » Curl » Version: 7.50.0
    cpe:2.3:a:haxx:curl:7.50.0
  • Haxx » Curl » Version: 7.50.1
    cpe:2.3:a:haxx:curl:7.50.1
  • Haxx » Curl » Version: 7.50.2
    cpe:2.3:a:haxx:curl:7.50.2
  • Haxx » Curl » Version: 7.50.3
    cpe:2.3:a:haxx:curl:7.50.3
  • Haxx » Curl » Version: 7.51.0
    cpe:2.3:a:haxx:curl:7.51.0
  • Haxx » Curl » Version: 7.52.0
    cpe:2.3:a:haxx:curl:7.52.0
  • Haxx » Curl » Version: 7.52.1
    cpe:2.3:a:haxx:curl:7.52.1
  • Haxx » Curl » Version: 7.53.0
    cpe:2.3:a:haxx:curl:7.53.0
  • Haxx » Curl » Version: 7.53.1
    cpe:2.3:a:haxx:curl:7.53.1
  • Haxx » Curl » Version: 7.54.0
    cpe:2.3:a:haxx:curl:7.54.0
  • Haxx » Curl » Version: 7.54.1
    cpe:2.3:a:haxx:curl:7.54.1
  • Haxx » Curl » Version: 7.55.0
    cpe:2.3:a:haxx:curl:7.55.0
  • Haxx » Curl » Version: 7.55.1
    cpe:2.3:a:haxx:curl:7.55.1
  • Haxx » Curl » Version: 7.56.0
    cpe:2.3:a:haxx:curl:7.56.0
  • Haxx » Curl » Version: 7.56.1
    cpe:2.3:a:haxx:curl:7.56.1
  • Haxx » Curl » Version: 7.57.0
    cpe:2.3:a:haxx:curl:7.57.0
  • Haxx » Curl » Version: 7.58.0
    cpe:2.3:a:haxx:curl:7.58.0
  • Haxx » Curl » Version: 7.59.0
    cpe:2.3:a:haxx:curl:7.59.0
  • Haxx » Curl » Version: 7.60.0
    cpe:2.3:a:haxx:curl:7.60.0
  • Haxx » Curl » Version: 7.61.0
    cpe:2.3:a:haxx:curl:7.61.0
  • Haxx » Curl » Version: 7.61.1
    cpe:2.3:a:haxx:curl:7.61.1
  • Haxx » Curl » Version: 7.62.0
    cpe:2.3:a:haxx:curl:7.62.0
  • Haxx » Curl » Version: 7.63.0
    cpe:2.3:a:haxx:curl:7.63.0
  • Haxx » Curl » Version: 7.64.0
    cpe:2.3:a:haxx:curl:7.64.0
  • Haxx » Curl » Version: 7.64.1
    cpe:2.3:a:haxx:curl:7.64.1
  • Haxx » Curl » Version: 7.65.0
    cpe:2.3:a:haxx:curl:7.65.0
  • Haxx » Curl » Version: 7.65.1
    cpe:2.3:a:haxx:curl:7.65.1
  • Haxx » Curl » Version: 7.65.2
    cpe:2.3:a:haxx:curl:7.65.2
  • Haxx » Curl » Version: 7.65.3
    cpe:2.3:a:haxx:curl:7.65.3
  • Haxx » Curl » Version: 7.66.0
    cpe:2.3:a:haxx:curl:7.66.0
  • Haxx » Curl » Version: 7.67.0
    cpe:2.3:a:haxx:curl:7.67.0
  • Haxx » Curl » Version: 7.68.0
    cpe:2.3:a:haxx:curl:7.68.0
  • Haxx » Curl » Version: 7.69.0
    cpe:2.3:a:haxx:curl:7.69.0
  • Haxx » Curl » Version: 7.69.1
    cpe:2.3:a:haxx:curl:7.69.1
  • Haxx » Curl » Version: 7.7
    cpe:2.3:a:haxx:curl:7.7
  • Haxx » Curl » Version: 7.7.1
    cpe:2.3:a:haxx:curl:7.7.1
  • Haxx » Curl » Version: 7.7.2
    cpe:2.3:a:haxx:curl:7.7.2
  • Haxx » Curl » Version: 7.7.3
    cpe:2.3:a:haxx:curl:7.7.3
  • Haxx » Curl » Version: 7.70.0
    cpe:2.3:a:haxx:curl:7.70.0
  • Haxx » Curl » Version: 7.71.0
    cpe:2.3:a:haxx:curl:7.71.0
  • Haxx » Curl » Version: 7.71.1
    cpe:2.3:a:haxx:curl:7.71.1
  • Haxx » Curl » Version: 7.72.0
    cpe:2.3:a:haxx:curl:7.72.0
  • Haxx » Curl » Version: 7.73.0
    cpe:2.3:a:haxx:curl:7.73.0
  • Haxx » Curl » Version: 7.74.0
    cpe:2.3:a:haxx:curl:7.74.0
  • Haxx » Curl » Version: 7.75.0
    cpe:2.3:a:haxx:curl:7.75.0
  • Haxx » Curl » Version: 7.76.0
    cpe:2.3:a:haxx:curl:7.76.0
  • Haxx » Curl » Version: 7.76.1
    cpe:2.3:a:haxx:curl:7.76.1
  • Haxx » Curl » Version: 7.8
    cpe:2.3:a:haxx:curl:7.8
  • Haxx » Curl » Version: 7.8.1
    cpe:2.3:a:haxx:curl:7.8.1
  • Haxx » Curl » Version: 7.9
    cpe:2.3:a:haxx:curl:7.9
  • Haxx » Curl » Version: 7.9.1
    cpe:2.3:a:haxx:curl:7.9.1
  • Haxx » Curl » Version: 7.9.2
    cpe:2.3:a:haxx:curl:7.9.2
  • Haxx » Curl » Version: 7.9.3
    cpe:2.3:a:haxx:curl:7.9.3
  • Haxx » Curl » Version: 7.9.4
    cpe:2.3:a:haxx:curl:7.9.4
  • Haxx » Curl » Version: 7.9.5
    cpe:2.3:a:haxx:curl:7.9.5
  • Haxx » Curl » Version: 7.9.6
    cpe:2.3:a:haxx:curl:7.9.6
  • Haxx » Curl » Version: 7.9.7
    cpe:2.3:a:haxx:curl:7.9.7
  • Haxx » Curl » Version: 7.9.8
    cpe:2.3:a:haxx:curl:7.9.8
  • cpe:2.3:a:oracle:communications_cloud_native_core_binding_support_function:1.11.0
  • cpe:2.3:a:oracle:communications_cloud_native_core_network_function_cloud_native_environment:1.10.0
  • cpe:2.3:a:oracle:communications_cloud_native_core_network_repository_function:1.15.0
  • cpe:2.3:a:oracle:communications_cloud_native_core_network_repository_function:1.15.1
  • cpe:2.3:a:oracle:communications_cloud_native_core_network_slice_selection_function:1.8.0
  • cpe:2.3:a:oracle:communications_cloud_native_core_service_communication_proxy:1.15.0
  • Oracle » Essbase » Version: Any
    cpe:2.3:a:oracle:essbase:*
  • Oracle » Essbase » Version: 21.1
    cpe:2.3:a:oracle:essbase:21.1
  • Oracle » Essbase » Version: 21.2
    cpe:2.3:a:oracle:essbase:21.2
  • Oracle » Mysql Server » Version: N/A
    cpe:2.3:a:oracle:mysql_server:-
  • Oracle » Mysql Server » Version: 5.7.0
    cpe:2.3:a:oracle:mysql_server:5.7.0
  • Oracle » Mysql Server » Version: 5.7.26
    cpe:2.3:a:oracle:mysql_server:5.7.26
  • Oracle » Mysql Server » Version: 5.7.27
    cpe:2.3:a:oracle:mysql_server:5.7.27
  • Oracle » Mysql Server » Version: 5.7.28
    cpe:2.3:a:oracle:mysql_server:5.7.28
  • Oracle » Mysql Server » Version: 5.7.32
    cpe:2.3:a:oracle:mysql_server:5.7.32
  • Oracle » Mysql Server » Version: 5.7.33
    cpe:2.3:a:oracle:mysql_server:5.7.33
  • Oracle » Mysql Server » Version: 8.0.15
    cpe:2.3:a:oracle:mysql_server:8.0.15
  • Oracle » Mysql Server » Version: 8.0.17
    cpe:2.3:a:oracle:mysql_server:8.0.17
  • Oracle » Mysql Server » Version: 8.0.22
    cpe:2.3:a:oracle:mysql_server:8.0.22
  • Oracle » Mysql Server » Version: 8.0.23
    cpe:2.3:a:oracle:mysql_server:8.0.23
  • Oracle » Mysql Server » Version: 8.0.24
    cpe:2.3:a:oracle:mysql_server:8.0.24
  • cpe:2.3:a:siemens:sinec_infrastructure_network_services:-
  • cpe:2.3:a:siemens:sinec_infrastructure_network_services:1.0.1
  • Splunk » Universal Forwarder » Version: 8.2.0
    cpe:2.3:a:splunk:universal_forwarder:8.2.0
  • Splunk » Universal Forwarder » Version: 8.2.10
    cpe:2.3:a:splunk:universal_forwarder:8.2.10
  • Splunk » Universal Forwarder » Version: 8.2.11
    cpe:2.3:a:splunk:universal_forwarder:8.2.11
  • Splunk » Universal Forwarder » Version: 8.2.6
    cpe:2.3:a:splunk:universal_forwarder:8.2.6
  • Splunk » Universal Forwarder » Version: 8.2.7
    cpe:2.3:a:splunk:universal_forwarder:8.2.7
  • Splunk » Universal Forwarder » Version: 8.2.8
    cpe:2.3:a:splunk:universal_forwarder:8.2.8
  • Splunk » Universal Forwarder » Version: 8.2.9
    cpe:2.3:a:splunk:universal_forwarder:8.2.9
  • Splunk » Universal Forwarder » Version: 9.0.0
    cpe:2.3:a:splunk:universal_forwarder:9.0.0
  • Splunk » Universal Forwarder » Version: 9.0.1
    cpe:2.3:a:splunk:universal_forwarder:9.0.1
  • Splunk » Universal Forwarder » Version: 9.0.2
    cpe:2.3:a:splunk:universal_forwarder:9.0.2
  • Splunk » Universal Forwarder » Version: 9.0.3
    cpe:2.3:a:splunk:universal_forwarder:9.0.3
  • Splunk » Universal Forwarder » Version: 9.0.4
    cpe:2.3:a:splunk:universal_forwarder:9.0.4
  • Splunk » Universal Forwarder » Version: 9.0.5
    cpe:2.3:a:splunk:universal_forwarder:9.0.5
  • Splunk » Universal Forwarder » Version: 9.1.0
    cpe:2.3:a:splunk:universal_forwarder:9.1.0
  • Debian » Debian Linux » Version: 9.0
    cpe:2.3:o:debian:debian_linux:9.0
  • Fedoraproject » Fedora » Version: 33
    cpe:2.3:o:fedoraproject:fedora:33
  • Fedoraproject » Fedora » Version: 34
    cpe:2.3:o:fedoraproject:fedora:34


Contact Us

Shodan ® - All rights reserved