A coding error converting SIDs to gids could allow unexpected group entries in a process token. This could allow unauthorized access to files. https://www.samba.org/samba/security/CVE-2021-20254.html CREATE(Triage):(User=admin) CVE-2021-20254 (https://nvd.nist.gov/vuln/detail/CVE-2021-20254) Fixed by: https://github.com/curl/curl/commit/39ce47f219b09c380b81f89fe54ac586c8db6bde (7.77.0)