PT-2025-37032 · Curl+11 · Curl+11

Daniel Stenberg

·

Published

2025-01-01

·

Updated

2026-05-18

·

CVE-2025-9086

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions curl versions prior to 7.74.0-1.3+deb11u16 curl (affected versions not specified)
Description curl contains an out-of-bounds read issue in the cookie path comparison logic. This occurs when a secure cookie set via HTTPS is followed by a redirection to an insecure HTTP site using the same cookie name and a path of '/'. The vulnerability stems from a flaw in the path comparison logic, potentially leading to crashes or allowing insecure sites to override secure cookie contents. The issue arises when curl reads beyond heap buffer boundaries. The vulnerability could allow an attacker to control an HTTP site with the same name as the HTTPS version or perform a Man-in-the-Middle (MITM) attack.
Recommendations Upgrade to curl version 7.74.0-1.3+deb11u16 or later. Upgrade to the latest available version of curl.

Exploit

Fix

DoS

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025:23383
ALSA-2026:1350
ALSA-2026:1825
BDU:2025-12599
CLEANSTART-2026-AY18527
CLEANSTART-2026-BW46578
CLEANSTART-2026-DI23929
CLEANSTART-2026-LQ42192
CLEANSTART-2026-OF85770
CVE-2025-9086
DLA-4432-1
ECHO-6A25-E091-8EB3
JLSEC-2026-435
MGASA-2025-0232
OESA-2025-2319
OPENSUSE-SU-2025:15590-1
OPENSUSE-SU-2025:20090-1
RHSA-2025:23043
RHSA-2025:23125
RHSA-2025:23126
RHSA-2025:23127
RHSA-2025:23383
RHSA-2026:1350
RHSA-2026:1477
RHSA-2026:1825
RHSA-2026:6893
SUSE-SU-2025:03173-1
SUSE-SU-2025:03198-1
SUSE-SU-2025:03267-1
SUSE-SU-2025:03268-1
SUSE-SU-2025:20802-1
SUSE-SU-2025:20824-1
SUSE-SU-2025:21077-1
SUSE-SU-2025:21145-1
SUSE-SU-2025_03173-1
SUSE-SU-2025_03198-1
SUSE-SU-2025_03267-1
SUSE-SU-2025_03268-1
USN-8062-1

Affected Products

Almalinux
Centos
Debian
Ibm Aix
Linuxmint
Apple Macos
Red Hat
Red Os
Rocky Linux
Suse
Ubuntu
Curl