Curl 7.84 <= 8.2.1 Header DoS (CVE-2023-38039) for Windows 10 and Windows 11 OS

Torres pimentel, Rogelio 80 Reputation points
2023-10-10T19:14:46.7833333+00:00

Tenable Vulnerability scanner is detectong a CURL vulnerable version... Microsoft best practice Recomendation states that this package should not be upgraded manually, because that could break Windows update processes.

Tenable Vulnerability: Curl 7.84 <= 8.2.1 Header DoS (CVE-2023-38039)

Reference: https://www.tenable.com/plugins/nessus/181409

Solution Proposed: Upgrade Curl to version 8.3.0 or later

Any idea when Microsoft is going to release CURL Version 8.3.0 as a fix for Windows 10 and Windows 11 OS vulnerability CVE-2023-38039?

Microsoft 365 and Office | Install, redeem, activate | For business | Windows
Windows for business | Windows Client for IT Pros | User experience | Other
Microsoft Security | Intune | Other
{count} votes

4 answers

Sort by: Most helpful
  1. Jez 10 Reputation points
    2023-10-12T10:02:20.43+00:00

    Another vulnerability has been released for CURL on October 11th.
    Still not even an acknowledgment from MS about its existence and no update in the October cumulative for the previous one.

    Really could do with a real person saying something helpful rather than an AI bot that knows nothing.

    2 people found this answer helpful.

  2. Q&A Assist
    2023-10-10T19:14:46.7866667+00:00
    AI generated content. This question contains an answer created with AI from Q&A Assist. Learn more

    I don't know. The provided context does not contain information about when Microsoft will release CURL version 8.3.0 as a fix for the Windows 10 and Windows 11 OS vulnerability CVE-2023-38039.

    0 comments No comments

  3. John Knepler 5 Reputation points
    2023-10-24T20:15:10.6666667+00:00

    Same issue. Would be nice if MS would at least update it to a version or two behind at a minimum rather than being on a version that is over a year old.

    0 comments No comments

  4. Aneesh Kurian 0 Reputation points
    2023-11-22T12:52:32.82+00:00

    Same issue. Is there any update on the patch release. 8.4 on windows 11


Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.