vulnerability

Alpine Linux: CVE-2023-46219: Missing Encryption of Sensitive Data

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
Dec 12, 2023
Added
Mar 26, 2024
Modified
Mar 25, 2026

Description

When saving HSTS data to an excessively long file name, curl could end up
removing all contents, making subsequent requests using that file unaware of
the HSTS status they should otherwise use.

Solution

alpine-linux-upgrade-curl
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.