« List of all packages

conf-libcurl

Opam page: https://opam.ocaml.org/packages/conf-libcurl/

Versions

Version
conf-libcurl.2 (latest)
conf-libcurl.1

Vulnerable external dependencies (1052)

Product For package Vendor Severity CVE Published
openssl-devel conf-libcurl.2 OpenSSL High CVE-2026-9076 - Out-of-Bounds Read in CMS Password-Based Decryption 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL High CVE-2026-9076 - Out-of-Bounds Read in CMS Password-Based Decryption 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL High CVE-2026-7383 - Possible Heap Buffer Overflow in ASN.1 Multibyte String Conversion 6/9/2026
openssl-devel conf-libcurl.2 OpenSSL High CVE-2026-7383 - Possible Heap Buffer Overflow in ASN.1 Multibyte String Conversion 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL High CVE-2026-45447 - Heap Use-After-Free in the PKCS7_verify() Function 6/9/2026
openssl-devel conf-libcurl.2 OpenSSL High CVE-2026-45447 - Heap Use-After-Free in the PKCS7_verify() Function 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL Medium CVE-2026-45446 - Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes 6/9/2026
openssl-devel conf-libcurl.2 OpenSSL Medium CVE-2026-45446 - Incorrect Tag Processing for Empty Messages in AES-GCM-SIV and AES-SIV modes 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL High CVE-2026-45445 - AES-OCB IV Ignored on EVP_Cipher() Path 6/9/2026
openssl-devel conf-libcurl.2 OpenSSL High CVE-2026-45445 - AES-OCB IV Ignored on EVP_Cipher() Path 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL Medium CVE-2026-42771 - Possible Out of Bounds Read in X509_VERIFY_PARAM_set1_email() 6/9/2026
openssl-devel conf-libcurl.2 OpenSSL Medium CVE-2026-42771 - Possible Out of Bounds Read in X509_VERIFY_PARAM_set1_email() 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL Low CVE-2026-42770 - FFC-DH Peer Validation Uses Attacker-Supplied q 6/9/2026
openssl-devel conf-libcurl.2 OpenSSL Low CVE-2026-42770 - FFC-DH Peer Validation Uses Attacker-Supplied q 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL Medium CVE-2026-42769 - Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate 6/9/2026
openssl-devel conf-libcurl.2 OpenSSL Medium CVE-2026-42769 - Trust-Anchor Substitution via cert/issuer Typo in CMP rootCaKeyUpdate 6/9/2026
openssl-devel conf-libcurl.2 OpenSSL Low CVE-2026-42768 - Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL Low CVE-2026-42768 - Multi-RecipientInfo Bleichenbacher Oracle in CMS_decrypt() and PKCS7_decrypt() 6/9/2026
openssl-devel conf-libcurl.2 OpenSSL Medium CVE-2026-42767 - NULL Pointer Dereference in CRMF EncryptedValue Decryption 6/9/2026
openssl-devel conf-libcurl.1 OpenSSL Medium CVE-2026-42767 - NULL Pointer Dereference in CRMF EncryptedValue Decryption 6/9/2026