Retour à la veille

CVE-2026-13608

Publié : 6 septembre 2026
Modifié : 6 septembre 2026
Lien officiel NVD

Description détaillée

A flaw in the libcurl SASL negotiation for LDAP authentication allows an incomplete handshake sequence to be misinterpreted as a successful cryptographic verification. An attacker executing a Man-in-the-Middle (MITM) attack can inject a premature or shortcut response that bypasses complete peer validation.

Références et Patchs