[CLSA-2023:1681491543] curl: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2023-04-14
Description:
- CVE-2023-27533: prevent TELNET option from IAC injection - CVE-2023-27535: fix behavior when FTP too eager connection reuse - CVE-2023-27536: do not reuse connections with different GSS delegations
Updated packages:
  • curl-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:c0139d94cf7d7e2bd909c58c6608ea350223e782
  • curl-minimal-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:47ed68e5e3728f4ebe9cc5fc6a4bda7bb282caeb
  • libcurl-7.61.1-22.el8.tuxcare.els7.i686.rpm
    sha:490229a9a90951f8a3b2f1cb119e6ec127b18bc9
  • libcurl-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:781cff5113f6b238b15691481aba13b791897da2
  • libcurl-devel-7.61.1-22.el8.tuxcare.els7.i686.rpm
    sha:597d27bc297f5c637b3059c6224f736ffe22f8cd
  • libcurl-devel-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:e8d69ee04c4eada57973c56b854816745da3862c
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els7.i686.rpm
    sha:2dd69bc0cd8c076188228f44daae7218e7c78019
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:973e1f1911d554003aa0a55c47902866dd2c8626
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.