curl before version 7.52.1 is vulnerable to an uninitialized random in libcurl's internal function that returns a good 32bit random value. Having a weak or virtually non-existent random value makes the operations that use it vulnerable.
Metrics
Affected Vendors & Products
References
History
Wed, 15 Apr 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published: 2018-04-23T19:00:00.000Z
Updated: 2026-04-15T21:03:18.894Z
Reserved: 2016-11-23T00:00:00.000Z
Link: CVE-2016-9594
Updated: 2024-08-06T02:59:02.701Z
Status : Modified
Published: 2018-04-23T19:29:00.233
Modified: 2024-11-21T03:01:28.530
Link: CVE-2016-9594