Back to search
CVE-2021-22945
Published: Sep 23, 2021
Modified: Jun 9, 2025
PUBLISHED
Description
When sending data to an MQTT server, libcurl <= 7.73.0 and 7.78.0 could in some circumstances erroneously keep a pointer to an already freed memory area and both use that again in a subsequent call to send data and also free it *again*.
| Vendor | Product | Versions |
|---|---|---|
n/a | https://github.com/curl/curl | affected curl 7.73.0 to and including 7.78.0 |
Weaknesses (CWE)
References
FEDORA-2021-fc96a3a749
vendor-advisory
FEDORA-2021-1d24845e93
vendor-advisory
DSA-5197
vendor-advisory
GLSA-202212-01
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now