CVE-2021-22898

curl 7.7 through 7.76.1 suffers from an information disclosure when the `-t` command line option, known as `CURLOPT_TELNETOPTIONS` in libcurl, is used to send variable=content pairs to TELNET servers. Due to a flaw in the option parser for sending NEW_ENV variables, libcurl could be made to pass on uninitialized data from a stack based buffer to the server, resulting in potentially revealing sensitive internal information to the server using a clear-text network protocol.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
3.1 LOW
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
hackeroneCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 31%
VendorProductVersion
haxxcurl
7.7 ≤
𝑥
≤ 7.76.1
debiandebian_linux
9.0
oraclecommunications_cloud_native_core_binding_support_function
1.11.0
oraclecommunications_cloud_native_core_network_function_cloud_native_environment
1.10.0
oraclecommunications_cloud_native_core_network_repository_function
1.15.0
oraclecommunications_cloud_native_core_network_repository_function
1.15.1
oraclecommunications_cloud_native_core_network_slice_selection_function
1.8.0
oraclecommunications_cloud_native_core_service_communication_proxy
1.15.0
oracleessbase
𝑥
< 11.1.2.4.047
oracleessbase
21.0 ≤
𝑥
< 21.3
oraclemysql_server
𝑥
< 5.7.34
oraclemysql_server
8.0.15 ≤
𝑥
< 8.0.25
siemenssinec_infrastructure_network_services
𝑥
< 1.0.1.1
splunkuniversal_forwarder
8.2.0 ≤
𝑥
< 8.2.12
splunkuniversal_forwarder
9.0.0 ≤
𝑥
< 9.0.6
splunkuniversal_forwarder
9.1.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
curl
bullseye
7.74.0-1.3+deb11u13
fixed
bullseye (security)
7.74.0-1.3+deb11u11
fixed
bookworm
7.88.1-10+deb12u7
fixed
bookworm (security)
7.88.1-10+deb12u5
fixed
sid
8.10.1-2
fixed
trixie
8.10.1-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
curl
lunar
Fixed 7.74.0-1.2ubuntu4
released
kinetic
Fixed 7.74.0-1.2ubuntu4
released
jammy
Fixed 7.74.0-1.2ubuntu4
released
impish
Fixed 7.74.0-1.2ubuntu4
released
hirsute
Fixed 7.74.0-1ubuntu2.1
released
groovy
ignored
focal
Fixed 7.68.0-1ubuntu2.6
released
bionic
Fixed 7.58.0-2ubuntu3.14
released
xenial
Fixed 7.47.0-1ubuntu2.19+esm3
released
trusty
Fixed 7.35.0-1ubuntu2.20+esm14
released
References