CVE-2022-22576 vulnerability in Canonical and Other Products
Published on May 26, 2022
An improper authentication vulnerability exists in curl 7.33.0 to and including 7.82.0 which might allow reuse OAUTH2-authenticated connections without properly making sure that the connection was authenticated with the same credentials as set for this transfer. This affects SASL-enabled protocols: SMPTP(S), IMAP(S), POP3(S) and LDAP(S) (openldap only).
Weakness Type
What is an authentification Vulnerability?
When an actor claims to have a given identity, the software does not prove or insufficiently proves that the claim is correct.
CVE-2022-22576 has been classified to as an authentification vulnerability or weakness.
Products Associated with CVE-2022-22576
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2022-22576 are published in these products:
Exploit Probability
EPSS
0.24%
Percentile
47.10%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.