Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2023-27537
Description:A double free vulnerability exists in libcurl <8.0.0 when sharing HSTS data between separate "handles". This sharing was introduced without considerations for do this sharing across separate threads but there was no indication of this fact in the documentation. Due to missing mutexes or thread locks, two threads sharing the same HSTS data could end up doing a double-free or use-after-free.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2023-27537
https://security.gentoo.org/glsa/202310-12
https://hackerone.com/reports/1897203
https://hackerone.com/reports/1897203




© 1998-2025 E-Soft Inc. All rights reserved.