CVE-2022-27781: CERTINFO never-ending busy-loop

Disclosed: 2022-07-24 19:31:22 By sybr To ibb
Low
Vulnerability Details
Published Advisory: https://curl.se/docs/CVE-2022-27781.html Original Report: https://hackerone.com/reports/1555441 ## Impact Due to an erroneous function, a malicious server could make libcurl built with NSS get stuck in a never-ending busy-loop when trying to retrieve that information.
Actions
View on HackerOne
Report Stats
  • Report ID: 1606039
  • State: Closed
  • Substate: resolved
  • Upvotes: 5
Share this report