cisco-sa-curl-libcurl-D9ds39cV: cURL and libcurl Vulnerability Affecting Cisco Products: October 2023
Published Oct 12, 2023
·Updated
On October 11, 2023, cURL released Version 8.4.0 of the cURL utility and the libcurl library. This release addressed two security vulnerabilities: CVE-2023-38545 - High Security Impact Rating (SIR)CVE-2023-38546 - Low SIRThis
Affected Software
2 affected components
curl curl
curl libcurl
Event History
Oct 12, 2023
Advisory Published
04:00 PM
Data Sourced
04:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of cisco-sa-curl-libcurl-D9ds39cV?
The severity of cisco-sa-curl-libcurl-D9ds39cV includes a high impact vulnerability, CVE-2023-38545, and a low impact vulnerability, CVE-2023-38546.
2
How do I fix cisco-sa-curl-libcurl-D9ds39cV?
To fix cisco-sa-curl-libcurl-D9ds39cV, users should upgrade to cURL Version 8.4.0 or later.
3
What products are affected by cisco-sa-curl-libcurl-D9ds39cV?
The affected products include cURL and libcurl.
4
What vulnerabilities are addressed in cisco-sa-curl-libcurl-D9ds39cV?
cisco-sa-curl-libcurl-D9ds39cV addresses CVE-2023-38545 and CVE-2023-38546.
5
When was cisco-sa-curl-libcurl-D9ds39cV released?
cisco-sa-curl-libcurl-D9ds39cV was released on October 11, 2023.