Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2022-42915

27
FAUCET Score

CVE-2022-42915 is a double free vulnerability in curl versions 7.77.0 through 7.85.0, affecting products from Apple, Fedora Project, Haxx, NetApp, and Splunk. This flaw occurs when curl attempts to use an HTTP proxy for non-HTTP(S) URLs (specifically dict, gopher, gophers, ldap, ldaps, rtmp, rtmps, or telnet schemes) and the proxy returns a non-200 status code, leading to improper error handling. With a CVSS score of 8.1 (HIGH), the vulnerability has a network attack vector and high impact on confidentiality, integrity, and availability, though it requires high attack complexity. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
>= 7.77.0, < 7.86.0CPE matchmatch criteria
cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:*
35CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
36CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
37CPE matchmatch criteria
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
Range not provided by sourceCPE matchmatch criteria
cpe:2.3:o:netapp:h300s_firmware:-:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

8.1HIGH

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.2
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
2.93%
Probability of exploitation in next 30 days
EPSS Percentile
85.6%
Percentile rank of EPSS score among Peer Group
As of 2026-07-26
Model: v2026.06.15
This CVE's current EPSS score of 0.0293 is in the 44th percentile among its peer group of 8,915 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (19)

hikvisionpatch availablevia llm_extracted
microsoftpatch availablevia msrc
Product: 17878-17084Fixed in: 2.16.1-1
microsoftpatch availablevia msrc
Product: 18561-16820Fixed in: 7.86.0-1
microsoftpatch availablevia msrc
Product: 18562-16823Fixed in: 7.86.0-1
microsoftpatch availablevia msrc
Product: cbl2 curl 7.86.0-1 on CBL Mariner 2.0Fixed in: 7.86.0-1
microsoftpatch availablevia msrc
Product: azl3 tensorflow 2.11.1-1 on Azure Linux 3.0Fixed in: 2.16.1-1
microsoftpatch availablevia msrc
Product: azl3 tensorflow 2.16.1-1 on Azure Linux 3.0Fixed in: 2.16.1-1
microsoftpatch availablevia msrc
Product: cm1 curl 7.86.0-1 on CBL Mariner 1.0Fixed in: 7.86.0-1
microsoftpatch availablevia msrc
Product: 18295-17084Fixed in: 2.16.1-1
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 x64Fixed in: 7.86.0-1
microsoftpatch availablevia msrc
Product: CBL Mariner 1.0 ARMFixed in: 7.86.0-1
microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 x64Fixed in: 7.86.0-1
microsoftpatch availablevia msrc
Product: CBL Mariner 2.0 ARMFixed in: 7.86.0-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 x64Fixed in: 2.16.1-1
microsoftpatch availablevia msrc
Product: Azure Linux 3.0 ARMFixed in: 2.16.1-1
redhatpatch availablevia redhat_api
Product: JBoss Core Services on RHEL 7Fixed in: jbcs-httpd24-curl-0:7.86.0-2.el7jbcs
View patch
redhatpatch availablevia redhat_api
Product: Text-Only JBCSFixed in: jbcs-httpd24-curl
View patch
redhatpatch availablevia redhat_api
Product: JBoss Core Services for RHEL 8Fixed in: jbcs-httpd24-curl-0:7.86.0-2.el8jbcs
View patch
zimbrapatch availablevia llm_extracted
Fixed in: 8.2.12, 9.0.6, 9.1.1

Vendor Advisories (5)

microsoft2024-Jun/CVE-2022-42915

CVE-2022-42915

Jun 11, 2024
zimbrallm-zimbra-9542faa91a6d6884HIGH

August Third Party Package Updates in Splunk Universal Forwarder

Aug 30, 2023
redhatCVE-2022-42915Moderate

curl: HTTP proxy double-free

Oct 26, 2022
hikvisionllm-hikvision-b5e2b0e12f3977f5MEDIUM

HTTP proxy double free

Oct 26, 2022
microsoft2022-Oct/CVE-2022-42915Important

curl before 7.86.0 has a double free. If curl is told to use an HTTP proxy for a transfer with a non-HTTP(S) URL it sets up the connection to the remote server by issuing a CONNECT request to the proxy and then tunnels the rest of the protocol through. An HTTP proxy might refuse this request (HTTP proxies often only allow outgoing connections to specific port numbers like 443 for HTTPS) and instead return a non-200 status code to the client. Due to flaws in the error/cleanup handling this could trigger a double free in curl if one of the following schemes were used in the URL for the transfer: dict gopher gophers ldap ldaps rtmp rtmps or telnet. The earliest affected version is 7.77.0.

Oct 11, 2022

References

curl.se / docs/CVE-2022-42915.html
Vendor Advisory
seclists.org / fulldisclosure/2023/Jan/19
Mailing ListThird Party Advisory
seclists.org / fulldisclosure/2023/Jan/20
Mailing ListThird Party Advisory
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/37YEVVC6NAF6H7UHH6YAUY5QEVY6LIH2
Mailing ListThird Party Advisory
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/HVU3IMZCKR4VE6KJ4GCWRL2ILLC6OV76
Mailing ListThird Party Advisory
lists.fedoraproject.org / archives/list/package-announce%40lists.fedoraproject.org/message/Q27V5YYMXUVI6PRZQVECON32XPVWTKDK
Mailing ListThird Party Advisory
security.gentoo.org / glsa/202212-01
Third Party Advisory
security.netapp.com / advisory/ntap-20221209-0010
Third Party Advisory
support.apple.com / kb/HT213604
Third Party Advisory
support.apple.com / kb/HT213605
Third Party Advisory