Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2024-2466
Description:libcurl did not check the server certificate of TLS connections done to a host specified as an IP address, when built to use mbedTLS. libcurl would wrongly avoid using the set hostname function when the specified hostname was given as an IP address, therefore completely skipping the certificate check. This affects all uses of TLS protocols (HTTPS, FTPS, IMAPS, POPS3, SMTPS, etc).
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2024-2466
issue
https://hackerone.com/reports/2416725
json
https://curl.se/docs/CVE-2024-2466.json
www
https://curl.se/docs/CVE-2024-2466.html
http://www.openwall.com/lists/oss-security/2024/03/27/4




© 1998-2025 E-Soft Inc. All rights reserved.