Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-2398

When an application tells libcurl it wants to allow HTTP/2 server push, and the amount of received headers for the push surpasses the maximum allowed limit (1000), libcurl aborts the server push. When aborting, libcurl inadvertently does not free all the previously allocated headers and instead leaks the memory. Further, this error condition fails silently and is therefore not easily detected by an application.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.017
EPSS Ranking 81.6%
CVSS Severity
CVSS v3 Score 8.6
References
Products affected by CVE-2024-2398
  • Haxx » Curl » Version: 7.44.0
    cpe:2.3:a:haxx:curl:7.44.0
  • Haxx » Curl » Version: 7.45.0
    cpe:2.3:a:haxx:curl:7.45.0
  • Haxx » Curl » Version: 7.46.0
    cpe:2.3:a:haxx:curl:7.46.0
  • Haxx » Curl » Version: 7.47.0
    cpe:2.3:a:haxx:curl:7.47.0
  • Haxx » Curl » Version: 7.47.1
    cpe:2.3:a:haxx:curl:7.47.1
  • Haxx » Curl » Version: 7.48.0
    cpe:2.3:a:haxx:curl:7.48.0
  • Haxx » Curl » Version: 7.49.0
    cpe:2.3:a:haxx:curl:7.49.0
  • Haxx » Curl » Version: 7.49.1
    cpe:2.3:a:haxx:curl:7.49.1
  • Haxx » Curl » Version: 7.50.0
    cpe:2.3:a:haxx:curl:7.50.0
  • Haxx » Curl » Version: 7.50.1
    cpe:2.3:a:haxx:curl:7.50.1
  • Haxx » Curl » Version: 7.50.2
    cpe:2.3:a:haxx:curl:7.50.2
  • Haxx » Curl » Version: 7.50.3
    cpe:2.3:a:haxx:curl:7.50.3
  • Haxx » Curl » Version: 7.51.0
    cpe:2.3:a:haxx:curl:7.51.0
  • Haxx » Curl » Version: 7.52.0
    cpe:2.3:a:haxx:curl:7.52.0
  • Haxx » Curl » Version: 7.52.1
    cpe:2.3:a:haxx:curl:7.52.1
  • Haxx » Curl » Version: 7.53.0
    cpe:2.3:a:haxx:curl:7.53.0
  • Haxx » Curl » Version: 7.53.1
    cpe:2.3:a:haxx:curl:7.53.1
  • Haxx » Curl » Version: 7.54.0
    cpe:2.3:a:haxx:curl:7.54.0
  • Haxx » Curl » Version: 7.54.1
    cpe:2.3:a:haxx:curl:7.54.1
  • Haxx » Curl » Version: 7.55.0
    cpe:2.3:a:haxx:curl:7.55.0
  • Haxx » Curl » Version: 7.55.1
    cpe:2.3:a:haxx:curl:7.55.1
  • Haxx » Curl » Version: 7.56.0
    cpe:2.3:a:haxx:curl:7.56.0
  • Haxx » Curl » Version: 7.56.1
    cpe:2.3:a:haxx:curl:7.56.1
  • Haxx » Curl » Version: 7.57.0
    cpe:2.3:a:haxx:curl:7.57.0
  • Haxx » Curl » Version: 7.58.0
    cpe:2.3:a:haxx:curl:7.58.0
  • Haxx » Curl » Version: 7.59.0
    cpe:2.3:a:haxx:curl:7.59.0
  • Haxx » Curl » Version: 7.60.0
    cpe:2.3:a:haxx:curl:7.60.0
  • Haxx » Curl » Version: 7.61.0
    cpe:2.3:a:haxx:curl:7.61.0
  • Haxx » Curl » Version: 7.61.1
    cpe:2.3:a:haxx:curl:7.61.1
  • Haxx » Curl » Version: 7.62.0
    cpe:2.3:a:haxx:curl:7.62.0
  • Haxx » Curl » Version: 7.63.0
    cpe:2.3:a:haxx:curl:7.63.0
  • Haxx » Curl » Version: 7.64.0
    cpe:2.3:a:haxx:curl:7.64.0
  • Haxx » Curl » Version: 7.64.1
    cpe:2.3:a:haxx:curl:7.64.1
  • Haxx » Curl » Version: 7.65.0
    cpe:2.3:a:haxx:curl:7.65.0
  • Haxx » Curl » Version: 7.65.1
    cpe:2.3:a:haxx:curl:7.65.1
  • Haxx » Curl » Version: 7.65.2
    cpe:2.3:a:haxx:curl:7.65.2
  • Haxx » Curl » Version: 7.65.3
    cpe:2.3:a:haxx:curl:7.65.3
  • Haxx » Curl » Version: 7.66.0
    cpe:2.3:a:haxx:curl:7.66.0
  • Haxx » Curl » Version: 7.67.0
    cpe:2.3:a:haxx:curl:7.67.0
  • Haxx » Curl » Version: 7.68.0
    cpe:2.3:a:haxx:curl:7.68.0
  • Haxx » Curl » Version: 7.69.0
    cpe:2.3:a:haxx:curl:7.69.0
  • Haxx » Curl » Version: 7.69.1
    cpe:2.3:a:haxx:curl:7.69.1
  • Haxx » Curl » Version: 7.70.0
    cpe:2.3:a:haxx:curl:7.70.0
  • Haxx » Curl » Version: 7.71.0
    cpe:2.3:a:haxx:curl:7.71.0
  • Haxx » Curl » Version: 7.71.1
    cpe:2.3:a:haxx:curl:7.71.1
  • Haxx » Curl » Version: 7.72.0
    cpe:2.3:a:haxx:curl:7.72.0
  • Haxx » Curl » Version: 7.73.0
    cpe:2.3:a:haxx:curl:7.73.0
  • Haxx » Curl » Version: 7.74.0
    cpe:2.3:a:haxx:curl:7.74.0
  • Haxx » Curl » Version: 7.75.0
    cpe:2.3:a:haxx:curl:7.75.0
  • Haxx » Curl » Version: 7.76.0
    cpe:2.3:a:haxx:curl:7.76.0
  • Haxx » Curl » Version: 7.76.1
    cpe:2.3:a:haxx:curl:7.76.1
  • Haxx » Curl » Version: 7.77.0
    cpe:2.3:a:haxx:curl:7.77.0
  • Haxx » Curl » Version: 7.78.0
    cpe:2.3:a:haxx:curl:7.78.0
  • Haxx » Curl » Version: 7.79.0
    cpe:2.3:a:haxx:curl:7.79.0
  • Haxx » Curl » Version: 7.79.1
    cpe:2.3:a:haxx:curl:7.79.1
  • Haxx » Curl » Version: 7.80.0
    cpe:2.3:a:haxx:curl:7.80.0
  • Haxx » Curl » Version: 7.81.0
    cpe:2.3:a:haxx:curl:7.81.0
  • Haxx » Curl » Version: 7.82.0
    cpe:2.3:a:haxx:curl:7.82.0
  • Haxx » Curl » Version: 7.83.0
    cpe:2.3:a:haxx:curl:7.83.0
  • Haxx » Curl » Version: 7.83.1
    cpe:2.3:a:haxx:curl:7.83.1
  • Haxx » Curl » Version: 7.84.0
    cpe:2.3:a:haxx:curl:7.84.0
  • Haxx » Curl » Version: 7.85.0
    cpe:2.3:a:haxx:curl:7.85.0
  • Haxx » Curl » Version: 7.86.0
    cpe:2.3:a:haxx:curl:7.86.0
  • Haxx » Curl » Version: 7.87.0
    cpe:2.3:a:haxx:curl:7.87.0
  • Haxx » Curl » Version: 7.88.0
    cpe:2.3:a:haxx:curl:7.88.0
  • Haxx » Curl » Version: 7.88.1
    cpe:2.3:a:haxx:curl:7.88.1
  • Haxx » Curl » Version: 8.0.0
    cpe:2.3:a:haxx:curl:8.0.0
  • Haxx » Curl » Version: 8.0.1
    cpe:2.3:a:haxx:curl:8.0.1
  • Haxx » Curl » Version: 8.1.0
    cpe:2.3:a:haxx:curl:8.1.0
  • Haxx » Curl » Version: 8.1.1
    cpe:2.3:a:haxx:curl:8.1.1
  • Haxx » Curl » Version: 8.1.2
    cpe:2.3:a:haxx:curl:8.1.2
  • Haxx » Curl » Version: 8.2.0
    cpe:2.3:a:haxx:curl:8.2.0
  • Haxx » Curl » Version: 8.2.1
    cpe:2.3:a:haxx:curl:8.2.1
  • Haxx » Curl » Version: 8.4.0
    cpe:2.3:a:haxx:curl:8.4.0
  • Haxx » Curl » Version: 8.5.0
    cpe:2.3:a:haxx:curl:8.5.0
  • Haxx » Curl » Version: 8.6.0
    cpe:2.3:a:haxx:curl:8.6.0
  • Netapp » Active Iq Unified Manager » Version: N/A
    cpe:2.3:a:netapp:active_iq_unified_manager:-
  • cpe:2.3:a:netapp:ontap_select_deploy_administration_utility:-
  • Netapp » H300s » Version: N/A
    cpe:2.3:h:netapp:h300s:-
  • Netapp » H410s » Version: N/A
    cpe:2.3:h:netapp:h410s:-
  • Netapp » H500s » Version: N/A
    cpe:2.3:h:netapp:h500s:-
  • Netapp » H610c » Version: N/A
    cpe:2.3:h:netapp:h610c:-
  • Netapp » H610s » Version: N/A
    cpe:2.3:h:netapp:h610s:-
  • Netapp » H615c » Version: N/A
    cpe:2.3:h:netapp:h615c:-
  • Netapp » H700s » Version: N/A
    cpe:2.3:h:netapp:h700s:-
  • Netapp » Hci Compute Node » Version: N/A
    cpe:2.3:h:netapp:hci_compute_node:-
  • Apple » Macos » Version: N/A
    cpe:2.3:o:apple:macos:-
  • Apple » Macos » Version: 1.0
    cpe:2.3:o:apple:macos:1.0
  • Apple » Macos » Version: 10.15.7
    cpe:2.3:o:apple:macos:10.15.7
  • Apple » Macos » Version: 11.0
    cpe:2.3:o:apple:macos:11.0
  • Apple » Macos » Version: 11.0.1
    cpe:2.3:o:apple:macos:11.0.1
  • Apple » Macos » Version: 11.1
    cpe:2.3:o:apple:macos:11.1
  • Apple » Macos » Version: 11.1.0
    cpe:2.3:o:apple:macos:11.1.0
  • Apple » Macos » Version: 11.2
    cpe:2.3:o:apple:macos:11.2
  • Apple » Macos » Version: 11.2.1
    cpe:2.3:o:apple:macos:11.2.1
  • Apple » Macos » Version: 11.3
    cpe:2.3:o:apple:macos:11.3
  • Apple » Macos » Version: 11.3.1
    cpe:2.3:o:apple:macos:11.3.1
  • Apple » Macos » Version: 11.4
    cpe:2.3:o:apple:macos:11.4
  • Apple » Macos » Version: 11.5
    cpe:2.3:o:apple:macos:11.5
  • Apple » Macos » Version: 11.5.1
    cpe:2.3:o:apple:macos:11.5.1
  • Apple » Macos » Version: 11.6
    cpe:2.3:o:apple:macos:11.6
  • Apple » Macos » Version: 11.6.1
    cpe:2.3:o:apple:macos:11.6.1
  • Apple » Macos » Version: 11.6.2
    cpe:2.3:o:apple:macos:11.6.2
  • Apple » Macos » Version: 11.6.3
    cpe:2.3:o:apple:macos:11.6.3
  • Apple » Macos » Version: 11.6.5
    cpe:2.3:o:apple:macos:11.6.5
  • Apple » Macos » Version: 11.6.6
    cpe:2.3:o:apple:macos:11.6.6
  • Apple » Macos » Version: 11.6.7
    cpe:2.3:o:apple:macos:11.6.7
  • Apple » Macos » Version: 11.6.8
    cpe:2.3:o:apple:macos:11.6.8
  • Apple » Macos » Version: 11.7
    cpe:2.3:o:apple:macos:11.7
  • Apple » Macos » Version: 11.7.1
    cpe:2.3:o:apple:macos:11.7.1
  • Apple » Macos » Version: 11.7.10
    cpe:2.3:o:apple:macos:11.7.10
  • Apple » Macos » Version: 11.7.2
    cpe:2.3:o:apple:macos:11.7.2
  • Apple » Macos » Version: 11.7.3
    cpe:2.3:o:apple:macos:11.7.3
  • Apple » Macos » Version: 11.7.5
    cpe:2.3:o:apple:macos:11.7.5
  • Apple » Macos » Version: 11.7.6
    cpe:2.3:o:apple:macos:11.7.6
  • Apple » Macos » Version: 11.7.7
    cpe:2.3:o:apple:macos:11.7.7
  • Apple » Macos » Version: 11.7.8
    cpe:2.3:o:apple:macos:11.7.8
  • Apple » Macos » Version: 11.7.9
    cpe:2.3:o:apple:macos:11.7.9
  • Apple » Macos » Version: 12.0
    cpe:2.3:o:apple:macos:12.0
  • Apple » Macos » Version: 12.0.0
    cpe:2.3:o:apple:macos:12.0.0
  • Apple » Macos » Version: 12.0.1
    cpe:2.3:o:apple:macos:12.0.1
  • Apple » Macos » Version: 12.1
    cpe:2.3:o:apple:macos:12.1
  • Apple » Macos » Version: 12.2
    cpe:2.3:o:apple:macos:12.2
  • Apple » Macos » Version: 12.2.1
    cpe:2.3:o:apple:macos:12.2.1
  • Apple » Macos » Version: 12.3
    cpe:2.3:o:apple:macos:12.3
  • Apple » Macos » Version: 12.3.1
    cpe:2.3:o:apple:macos:12.3.1
  • Apple » Macos » Version: 12.4
    cpe:2.3:o:apple:macos:12.4
  • Apple » Macos » Version: 12.5
    cpe:2.3:o:apple:macos:12.5
  • Apple » Macos » Version: 12.5.1
    cpe:2.3:o:apple:macos:12.5.1
  • Apple » Macos » Version: 12.6
    cpe:2.3:o:apple:macos:12.6
  • Apple » Macos » Version: 12.6.1
    cpe:2.3:o:apple:macos:12.6.1
  • Apple » Macos » Version: 12.6.2
    cpe:2.3:o:apple:macos:12.6.2
  • Apple » Macos » Version: 12.6.3
    cpe:2.3:o:apple:macos:12.6.3
  • Apple » Macos » Version: 12.6.4
    cpe:2.3:o:apple:macos:12.6.4
  • Apple » Macos » Version: 12.6.5
    cpe:2.3:o:apple:macos:12.6.5
  • Apple » Macos » Version: 12.6.6
    cpe:2.3:o:apple:macos:12.6.6
  • Apple » Macos » Version: 12.6.7
    cpe:2.3:o:apple:macos:12.6.7
  • Apple » Macos » Version: 12.6.8
    cpe:2.3:o:apple:macos:12.6.8
  • Apple » Macos » Version: 12.6.9
    cpe:2.3:o:apple:macos:12.6.9
  • Apple » Macos » Version: 12.7
    cpe:2.3:o:apple:macos:12.7
  • Apple » Macos » Version: 12.7.1
    cpe:2.3:o:apple:macos:12.7.1
  • Apple » Macos » Version: 12.7.2
    cpe:2.3:o:apple:macos:12.7.2
  • Apple » Macos » Version: 12.7.3
    cpe:2.3:o:apple:macos:12.7.3
  • Apple » Macos » Version: 12.7.4
    cpe:2.3:o:apple:macos:12.7.4
  • Apple » Macos » Version: 12.7.5
    cpe:2.3:o:apple:macos:12.7.5
  • Apple » Macos » Version: 13.0
    cpe:2.3:o:apple:macos:13.0
  • Apple » Macos » Version: 13.0.0
    cpe:2.3:o:apple:macos:13.0.0
  • Apple » Macos » Version: 13.0.1
    cpe:2.3:o:apple:macos:13.0.1
  • Apple » Macos » Version: 13.1
    cpe:2.3:o:apple:macos:13.1
  • Apple » Macos » Version: 13.2
    cpe:2.3:o:apple:macos:13.2
  • Apple » Macos » Version: 13.2.1
    cpe:2.3:o:apple:macos:13.2.1
  • Apple » Macos » Version: 13.3
    cpe:2.3:o:apple:macos:13.3
  • Apple » Macos » Version: 13.3.1
    cpe:2.3:o:apple:macos:13.3.1
  • Apple » Macos » Version: 13.3.3
    cpe:2.3:o:apple:macos:13.3.3
  • Apple » Macos » Version: 13.4
    cpe:2.3:o:apple:macos:13.4
  • Apple » Macos » Version: 13.4.1
    cpe:2.3:o:apple:macos:13.4.1
  • Apple » Macos » Version: 13.5
    cpe:2.3:o:apple:macos:13.5
  • Apple » Macos » Version: 13.5.2
    cpe:2.3:o:apple:macos:13.5.2
  • Apple » Macos » Version: 13.6
    cpe:2.3:o:apple:macos:13.6
  • Apple » Macos » Version: 13.6.1
    cpe:2.3:o:apple:macos:13.6.1
  • Apple » Macos » Version: 13.6.2
    cpe:2.3:o:apple:macos:13.6.2
  • Apple » Macos » Version: 13.6.3
    cpe:2.3:o:apple:macos:13.6.3
  • Apple » Macos » Version: 13.6.4
    cpe:2.3:o:apple:macos:13.6.4
  • Apple » Macos » Version: 13.6.5
    cpe:2.3:o:apple:macos:13.6.5
  • Apple » Macos » Version: 13.6.6
    cpe:2.3:o:apple:macos:13.6.6
  • Apple » Macos » Version: 13.6.7
    cpe:2.3:o:apple:macos:13.6.7
  • Apple » Macos » Version: 14.0
    cpe:2.3:o:apple:macos:14.0
  • Apple » Macos » Version: 14.1
    cpe:2.3:o:apple:macos:14.1
  • Apple » Macos » Version: 14.1.1
    cpe:2.3:o:apple:macos:14.1.1
  • Apple » Macos » Version: 14.1.2
    cpe:2.3:o:apple:macos:14.1.2
  • Apple » Macos » Version: 14.2
    cpe:2.3:o:apple:macos:14.2
  • Apple » Macos » Version: 14.2.1
    cpe:2.3:o:apple:macos:14.2.1
  • Apple » Macos » Version: 14.3
    cpe:2.3:o:apple:macos:14.3
  • Apple » Macos » Version: 14.4
    cpe:2.3:o:apple:macos:14.4
  • Apple » Macos » Version: 14.4.1
    cpe:2.3:o:apple:macos:14.4.1
  • Apple » Macos » Version: 14.5
    cpe:2.3:o:apple:macos:14.5
  • Apple » Macos » Version: 7.5.3
    cpe:2.3:o:apple:macos:7.5.3
  • Apple » Macos » Version: 7.6
    cpe:2.3:o:apple:macos:7.6
  • Apple » Macos » Version: 7.6.1
    cpe:2.3:o:apple:macos:7.6.1
  • Apple » Macos » Version: 8.0
    cpe:2.3:o:apple:macos:8.0
  • Apple » Macos » Version: 8.1
    cpe:2.3:o:apple:macos:8.1
  • Apple » Macos » Version: 8.5
    cpe:2.3:o:apple:macos:8.5
  • Apple » Macos » Version: 8.6
    cpe:2.3:o:apple:macos:8.6
  • Apple » Macos » Version: 9
    cpe:2.3:o:apple:macos:9
  • Apple » Macos » Version: 9.0
    cpe:2.3:o:apple:macos:9.0
  • Fedoraproject » Fedora » Version: 39
    cpe:2.3:o:fedoraproject:fedora:39
  • Fedoraproject » Fedora » Version: 40
    cpe:2.3:o:fedoraproject:fedora:40
  • Netapp » Bootstrap Os » Version: N/A
    cpe:2.3:o:netapp:bootstrap_os:-
  • cpe:2.3:o:netapp:brocade_fabric_operating_system:-
  • Netapp » H300s Firmware » Version: N/A
    cpe:2.3:o:netapp:h300s_firmware:-
  • Netapp » H410s Firmware » Version: N/A
    cpe:2.3:o:netapp:h410s_firmware:-
  • Netapp » H500s Firmware » Version: N/A
    cpe:2.3:o:netapp:h500s_firmware:-
  • Netapp » H610c Firmware » Version: N/A
    cpe:2.3:o:netapp:h610c_firmware:-
  • Netapp » H610s Firmware » Version: N/A
    cpe:2.3:o:netapp:h610s_firmware:-
  • Netapp » H615c Firmware » Version: N/A
    cpe:2.3:o:netapp:h615c_firmware:-
  • Netapp » H700s Firmware » Version: N/A
    cpe:2.3:o:netapp:h700s_firmware:-


Contact Us

Shodan ® - All rights reserved