/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2024-8096

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2024-8096

Severity

6.5

Medium

CVSS V3

Description

When curl is told to use the Certificate Status Request TLS extension, often referred to as OCSP stapling, to verify that the server certificate is valid, it might fail to detect some OCSP problems and instead wrongly consider the response as fine. If the returned status reports another error than 'revoked' (like for example 'unauthorized') it is not treated as a bad certficate.

References

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing