CVE-2022-27775: Infoleak
An information disclosure vulnerability exists in curl 7.65.0 to 7.82.0 are vulnerable that by using an IPv6 address that was in the connection pool but with a different zone id it could reuse a connection instead.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-27775?
CVE-2022-27775 is an information disclosure vulnerability in curl version 7.65.0 to 7.82.0.
How severe is CVE-2022-27775?
CVE-2022-27775 has a severity rating of 7.5 (High).
Which software versions are affected by CVE-2022-27775?
Versions 7.65.0 to 7.82.0 of curl are affected by CVE-2022-27775.
How can I fix CVE-2022-27775?
To fix CVE-2022-27775, update curl to version 7.88.1-10+deb12u4 or higher.
Are there any references for CVE-2022-27775?
Yes, you can find more information about CVE-2022-27775 at the following references: [link1](https://security-tracker.debian.org/tracker/CVE-2022-27775), [link2](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-27775), [link3](https://curl.se/docs/CVE-2022-27775.html).