CVE-2026-8925

Summary

The curl logic that works with SASL authentication could end up cleaning up the GSASL context twice without clearing the pointer in between, making it free() the same pointer twice.

Affected Software

VendorProductVersion RangeStatus
curlcurl8.15.0 < 8.16.1affected
curlcurl8.17.0 < 8.20.1affected
curlcurlab650379a8c25ca952f651476d25b4cdd77bb3fc < 3da249e1f0716c06644ed3522a37a8bf81808012affected
curlcurl8.20.0affected
curlcurl8.19.0affected
curlcurl8.18.0affected
curlcurl8.17.0affected
curlcurl8.16.0affected
curlcurl8.15.0affected

Weaknesses

  • CWE-415: Double Free

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: poc
    • Automatable: yes
    • Technical Impact: total

Additional References

References