[CLSA-2023:1681490707] curl: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2023-04-14
Description:
- CVE-2023-27533: prevent TELNET option from IAC injection - CVE-2023-27535: fix behavior when FTP too eager connection reuse - CVE-2023-27536: do not reuse connections with different GSS delegations
Updated packages:
  • curl-7.19.7-59.el6.tuxcare.els8.x86_64.rpm
    sha:6720f5bc166cafc57c08681f949d2b45c29edfa2
  • libcurl-7.19.7-59.el6.tuxcare.els8.i686.rpm
    sha:3f3d153596d6cb8d28d340dbf178fa2359499073
  • libcurl-7.19.7-59.el6.tuxcare.els8.x86_64.rpm
    sha:c5f4076ff2bef77fb95489b5e8456688daf3d9ec
  • libcurl-devel-7.19.7-59.el6.tuxcare.els8.i686.rpm
    sha:4e6c3eb7544f748dbeb06b4f9b2eadabfead468a
  • libcurl-devel-7.19.7-59.el6.tuxcare.els8.x86_64.rpm
    sha:bcb8a750aae5cceabc058de9193e92814075465d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.