CVE-2014-0015

cURL and libcurl 7.10.6 through 7.34.0, when more than one authentication method is enabled, re-uses NTLM connections, which might allow context-dependent attackers to authenticate as other users via a request.

Date published : 2014-02-01

http://archives.neohapsis.com/archives/bugtraq/2014-06/0172.html

http://www.securityfocus.com/bid/65270