[CLSA-2022:1658855227] Fixed CVEs in curl: CVE-2022-27776, CVE-2022-27774
Type:
security
Severity:
Moderate
Release date:
2022-07-26
Description:
- CVE-2022-27774: fix credential leak on redirect - CVE-2022-27776: fix auth/cookie leak on redirect
Updated packages:
  • libcurl-7.61.1-22.el8.tuxcare.els3.i686.rpm
    sha:04d7224854e748f72d6c0b1e0aad1f2f641d638b
  • curl-minimal-7.61.1-22.el8.tuxcare.els3.x86_64.rpm
    sha:e24b2cd87275b9083fcfd7767a6ae2185c6e8c5e
  • libcurl-devel-7.61.1-22.el8.tuxcare.els3.x86_64.rpm
    sha:448f35b684b4b517177b756f58e66cba00afbfa3
  • curl-7.61.1-22.el8.tuxcare.els3.x86_64.rpm
    sha:c50ef0a1edb06ed87c8ccdfaa7d72632d3b6ebf4
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els3.x86_64.rpm
    sha:ea9748d099e9c8589fcd96b7236f7b45dfcd2027
  • libcurl-7.61.1-22.el8.tuxcare.els3.x86_64.rpm
    sha:bdb4ce6d4cc983cc0c730062bc2ab23c0947c366
  • libcurl-devel-7.61.1-22.el8.tuxcare.els3.i686.rpm
    sha:7503cb2222b3d5cc62f444af8aac512ccc1cb47d
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els3.i686.rpm
    sha:9f295c035c024e49229bacfdddc484e0570195ff
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.