Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-32207

When curl < 7.84.0 saves cookies, alt-svc and hsts data to local files, it makes the operation atomic by finalizing the operation with a rename from a temporary name to the final target file name.In that rename operation, it might accidentally *widen* the permissions for the target file, leaving the updated file accessible to more users than intended.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 32.7%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
References
Products affected by CVE-2022-32207
  • Haxx » Curl » Version: 7.69.0
    cpe:2.3:a:haxx:curl:7.69.0
  • Haxx » Curl » Version: 7.69.1
    cpe:2.3:a:haxx:curl:7.69.1
  • Haxx » Curl » Version: 7.70.0
    cpe:2.3:a:haxx:curl:7.70.0
  • Haxx » Curl » Version: 7.71.0
    cpe:2.3:a:haxx:curl:7.71.0
  • Haxx » Curl » Version: 7.71.1
    cpe:2.3:a:haxx:curl:7.71.1
  • Haxx » Curl » Version: 7.72.0
    cpe:2.3:a:haxx:curl:7.72.0
  • Haxx » Curl » Version: 7.73.0
    cpe:2.3:a:haxx:curl:7.73.0
  • Haxx » Curl » Version: 7.74.0
    cpe:2.3:a:haxx:curl:7.74.0
  • Haxx » Curl » Version: 7.75.0
    cpe:2.3:a:haxx:curl:7.75.0
  • Haxx » Curl » Version: 7.76.0
    cpe:2.3:a:haxx:curl:7.76.0
  • Haxx » Curl » Version: 7.76.1
    cpe:2.3:a:haxx:curl:7.76.1
  • Haxx » Curl » Version: 7.77.0
    cpe:2.3:a:haxx:curl:7.77.0
  • Haxx » Curl » Version: 7.78.0
    cpe:2.3:a:haxx:curl:7.78.0
  • Haxx » Curl » Version: 7.79.0
    cpe:2.3:a:haxx:curl:7.79.0
  • Haxx » Curl » Version: 7.79.1
    cpe:2.3:a:haxx:curl:7.79.1
  • Haxx » Curl » Version: 7.80.0
    cpe:2.3:a:haxx:curl:7.80.0
  • Haxx » Curl » Version: 7.81.0
    cpe:2.3:a:haxx:curl:7.81.0
  • Haxx » Curl » Version: 7.82.0
    cpe:2.3:a:haxx:curl:7.82.0
  • Haxx » Curl » Version: 7.83.0
    cpe:2.3:a:haxx:curl:7.83.0
  • Haxx » Curl » Version: 7.83.1
    cpe:2.3:a:haxx:curl:7.83.1
  • Netapp » Clustered Data Ontap » Version: N/A
    cpe:2.3:a:netapp:clustered_data_ontap:-
  • Netapp » Element Software » Version: N/A
    cpe:2.3:a:netapp:element_software:-
  • Netapp » Hci Management Node » Version: N/A
    cpe:2.3:a:netapp:hci_management_node:-
  • Netapp » Solidfire » Version: N/A
    cpe:2.3:a:netapp:solidfire:-
  • Splunk » Universal Forwarder » Version: 8.2.0
    cpe:2.3:a:splunk:universal_forwarder:8.2.0
  • Splunk » Universal Forwarder » Version: 8.2.10
    cpe:2.3:a:splunk:universal_forwarder:8.2.10
  • Splunk » Universal Forwarder » Version: 8.2.11
    cpe:2.3:a:splunk:universal_forwarder:8.2.11
  • Splunk » Universal Forwarder » Version: 8.2.6
    cpe:2.3:a:splunk:universal_forwarder:8.2.6
  • Splunk » Universal Forwarder » Version: 8.2.7
    cpe:2.3:a:splunk:universal_forwarder:8.2.7
  • Splunk » Universal Forwarder » Version: 8.2.8
    cpe:2.3:a:splunk:universal_forwarder:8.2.8
  • Splunk » Universal Forwarder » Version: 8.2.9
    cpe:2.3:a:splunk:universal_forwarder:8.2.9
  • Splunk » Universal Forwarder » Version: 9.0.0
    cpe:2.3:a:splunk:universal_forwarder:9.0.0
  • Splunk » Universal Forwarder » Version: 9.0.1
    cpe:2.3:a:splunk:universal_forwarder:9.0.1
  • Splunk » Universal Forwarder » Version: 9.0.2
    cpe:2.3:a:splunk:universal_forwarder:9.0.2
  • Splunk » Universal Forwarder » Version: 9.0.3
    cpe:2.3:a:splunk:universal_forwarder:9.0.3
  • Splunk » Universal Forwarder » Version: 9.0.4
    cpe:2.3:a:splunk:universal_forwarder:9.0.4
  • Splunk » Universal Forwarder » Version: 9.0.5
    cpe:2.3:a:splunk:universal_forwarder:9.0.5
  • Splunk » Universal Forwarder » Version: 9.1.0
    cpe:2.3:a:splunk:universal_forwarder:9.1.0
  • Netapp » H300s » Version: N/A
    cpe:2.3:h:netapp:h300s:-
  • Netapp » H410s » Version: N/A
    cpe:2.3:h:netapp:h410s:-
  • Netapp » H500s » Version: N/A
    cpe:2.3:h:netapp:h500s:-
  • Netapp » H700s » Version: N/A
    cpe:2.3:h:netapp:h700s:-
  • Netapp » Hci Compute Node » Version: N/A
    cpe:2.3:h:netapp:hci_compute_node:-
  • Apple » Macos » Version: N/A
    cpe:2.3:o:apple:macos:-
  • Apple » Macos » Version: 1.0
    cpe:2.3:o:apple:macos:1.0
  • Apple » Macos » Version: 10.15.7
    cpe:2.3:o:apple:macos:10.15.7
  • Apple » Macos » Version: 11.0
    cpe:2.3:o:apple:macos:11.0
  • Apple » Macos » Version: 11.0.1
    cpe:2.3:o:apple:macos:11.0.1
  • Apple » Macos » Version: 11.1
    cpe:2.3:o:apple:macos:11.1
  • Apple » Macos » Version: 11.1.0
    cpe:2.3:o:apple:macos:11.1.0
  • Apple » Macos » Version: 11.2
    cpe:2.3:o:apple:macos:11.2
  • Apple » Macos » Version: 11.2.1
    cpe:2.3:o:apple:macos:11.2.1
  • Apple » Macos » Version: 11.3
    cpe:2.3:o:apple:macos:11.3
  • Apple » Macos » Version: 11.3.1
    cpe:2.3:o:apple:macos:11.3.1
  • Apple » Macos » Version: 11.4
    cpe:2.3:o:apple:macos:11.4
  • Apple » Macos » Version: 11.5
    cpe:2.3:o:apple:macos:11.5
  • Apple » Macos » Version: 11.5.1
    cpe:2.3:o:apple:macos:11.5.1
  • Apple » Macos » Version: 11.6
    cpe:2.3:o:apple:macos:11.6
  • Apple » Macos » Version: 11.6.1
    cpe:2.3:o:apple:macos:11.6.1
  • Apple » Macos » Version: 11.6.2
    cpe:2.3:o:apple:macos:11.6.2
  • Apple » Macos » Version: 11.6.3
    cpe:2.3:o:apple:macos:11.6.3
  • Apple » Macos » Version: 11.6.5
    cpe:2.3:o:apple:macos:11.6.5
  • Apple » Macos » Version: 11.6.6
    cpe:2.3:o:apple:macos:11.6.6
  • Apple » Macos » Version: 11.6.7
    cpe:2.3:o:apple:macos:11.6.7
  • Apple » Macos » Version: 11.6.8
    cpe:2.3:o:apple:macos:11.6.8
  • Apple » Macos » Version: 11.7
    cpe:2.3:o:apple:macos:11.7
  • Apple » Macos » Version: 11.7.1
    cpe:2.3:o:apple:macos:11.7.1
  • Apple » Macos » Version: 11.7.10
    cpe:2.3:o:apple:macos:11.7.10
  • Apple » Macos » Version: 11.7.2
    cpe:2.3:o:apple:macos:11.7.2
  • Apple » Macos » Version: 11.7.3
    cpe:2.3:o:apple:macos:11.7.3
  • Apple » Macos » Version: 11.7.5
    cpe:2.3:o:apple:macos:11.7.5
  • Apple » Macos » Version: 11.7.6
    cpe:2.3:o:apple:macos:11.7.6
  • Apple » Macos » Version: 11.7.7
    cpe:2.3:o:apple:macos:11.7.7
  • Apple » Macos » Version: 11.7.8
    cpe:2.3:o:apple:macos:11.7.8
  • Apple » Macos » Version: 11.7.9
    cpe:2.3:o:apple:macos:11.7.9
  • Apple » Macos » Version: 12.0
    cpe:2.3:o:apple:macos:12.0
  • Apple » Macos » Version: 12.0.0
    cpe:2.3:o:apple:macos:12.0.0
  • Apple » Macos » Version: 12.0.1
    cpe:2.3:o:apple:macos:12.0.1
  • Apple » Macos » Version: 12.1
    cpe:2.3:o:apple:macos:12.1
  • Apple » Macos » Version: 12.2
    cpe:2.3:o:apple:macos:12.2
  • Apple » Macos » Version: 12.2.1
    cpe:2.3:o:apple:macos:12.2.1
  • Apple » Macos » Version: 12.3
    cpe:2.3:o:apple:macos:12.3
  • Apple » Macos » Version: 12.3.1
    cpe:2.3:o:apple:macos:12.3.1
  • Apple » Macos » Version: 12.4
    cpe:2.3:o:apple:macos:12.4
  • Apple » Macos » Version: 12.5
    cpe:2.3:o:apple:macos:12.5
  • Apple » Macos » Version: 12.5.1
    cpe:2.3:o:apple:macos:12.5.1
  • Apple » Macos » Version: 12.6
    cpe:2.3:o:apple:macos:12.6
  • Apple » Macos » Version: 12.6.1
    cpe:2.3:o:apple:macos:12.6.1
  • Apple » Macos » Version: 12.6.2
    cpe:2.3:o:apple:macos:12.6.2
  • Apple » Macos » Version: 12.6.3
    cpe:2.3:o:apple:macos:12.6.3
  • Apple » Macos » Version: 12.6.4
    cpe:2.3:o:apple:macos:12.6.4
  • Apple » Macos » Version: 12.6.5
    cpe:2.3:o:apple:macos:12.6.5
  • Apple » Macos » Version: 12.6.6
    cpe:2.3:o:apple:macos:12.6.6
  • Apple » Macos » Version: 12.6.7
    cpe:2.3:o:apple:macos:12.6.7
  • Apple » Macos » Version: 12.6.8
    cpe:2.3:o:apple:macos:12.6.8
  • Apple » Macos » Version: 12.6.9
    cpe:2.3:o:apple:macos:12.6.9
  • Apple » Macos » Version: 12.7
    cpe:2.3:o:apple:macos:12.7
  • Apple » Macos » Version: 12.7.1
    cpe:2.3:o:apple:macos:12.7.1
  • Apple » Macos » Version: 12.7.2
    cpe:2.3:o:apple:macos:12.7.2
  • Apple » Macos » Version: 12.7.3
    cpe:2.3:o:apple:macos:12.7.3
  • Apple » Macos » Version: 12.7.4
    cpe:2.3:o:apple:macos:12.7.4
  • Apple » Macos » Version: 12.7.5
    cpe:2.3:o:apple:macos:12.7.5
  • Apple » Macos » Version: 12.7.6
    cpe:2.3:o:apple:macos:12.7.6
  • Apple » Macos » Version: 7.5.3
    cpe:2.3:o:apple:macos:7.5.3
  • Apple » Macos » Version: 7.6
    cpe:2.3:o:apple:macos:7.6
  • Apple » Macos » Version: 7.6.1
    cpe:2.3:o:apple:macos:7.6.1
  • Apple » Macos » Version: 8.0
    cpe:2.3:o:apple:macos:8.0
  • Apple » Macos » Version: 8.1
    cpe:2.3:o:apple:macos:8.1
  • Apple » Macos » Version: 8.5
    cpe:2.3:o:apple:macos:8.5
  • Apple » Macos » Version: 8.6
    cpe:2.3:o:apple:macos:8.6
  • Apple » Macos » Version: 9
    cpe:2.3:o:apple:macos:9
  • Apple » Macos » Version: 9.0
    cpe:2.3:o:apple:macos:9.0
  • Debian » Debian Linux » Version: 11.0
    cpe:2.3:o:debian:debian_linux:11.0
  • Fedoraproject » Fedora » Version: 35
    cpe:2.3:o:fedoraproject:fedora:35
  • Netapp » Bootstrap Os » Version: N/A
    cpe:2.3:o:netapp:bootstrap_os:-
  • Netapp » H300s Firmware » Version: N/A
    cpe:2.3:o:netapp:h300s_firmware:-
  • Netapp » H410s Firmware » Version: N/A
    cpe:2.3:o:netapp:h410s_firmware:-
  • Netapp » H500s Firmware » Version: N/A
    cpe:2.3:o:netapp:h500s_firmware:-
  • Netapp » H700s Firmware » Version: N/A
    cpe:2.3:o:netapp:h700s_firmware:-


Contact Us

Shodan ® - All rights reserved