First published: Wed Dec 11 2024(Updated: )
Last updated 16 December 2024
Credit: 2499f714-1537-4658-8207-48ae4bb9eae9
Affected Software | Affected Version | How to fix |
---|---|---|
debian/curl | <=7.74.0-1.3+deb11u13<=7.74.0-1.3+deb11u14<=7.88.1-10+deb12u8<=7.88.1-10+deb12u5 | 8.11.1-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-11053 has been classified as a medium severity vulnerability due to the potential for credential leakage.
To mitigate CVE-2024-11053, upgrade curl to version 8.11.1-1 or later.
CVE-2024-11053 affects curl versions up to and including 7.88.1-10+deb12u8 and specific releases in the 7.74.x series.
Yes, CVE-2024-11053 can lead to unauthorized access by leaking the password from a .netrc file to unintended hosts.
CVE-2024-11053 primarily affects the Debian distribution of curl, but similar configurations may exist in other operating systems.