The vendor explicitly states that these products are not affected by this CVE.
- curl as a component of Red Hat Enterprise Linux 10
- curl.src as a component of Red Hat Enterprise Linux 10
- libcurl as a component of Red Hat Enterprise Linux 10
- libcurl-devel as a component of Red Hat Enterprise Linux 10
- libcurl-minimal as a component of Red Hat Enterprise Linux 10
- snphost.src as a component of Red Hat Enterprise Linux 10
- trustee-guest-components.src as a component of Red Hat Enterprise Linux 10
- curl as a component of Red Hat Enterprise Linux 6
- curl.src as a component of Red Hat Enterprise Linux 6
- libcurl as a component of Red Hat Enterprise Linux 6
- libcurl-devel as a component of Red Hat Enterprise Linux 6
- curl as a component of Red Hat Enterprise Linux 7
- Summary
- A flaw was found in libcurl. This vulnerability allows an attacker to trigger a double-close of an eventfd file descriptor via a connection teardown after a threaded name resolution, potentially leading to undefined behavior or a denial of service.
- Remediation
- No remediation text is recorded.
