[CLSA-2023:1681491763] curl: Fix of 3 CVEs
Type:
security
Severity:
Critical
Release date:
2023-04-14
Description:
- CVE-2023-27533: prevent TELNET option from IAC injection - CVE-2023-27535: fix behavior when FTP too eager connection reuse - CVE-2023-27536: do not reuse connections with different GSS delegations
Updated packages:
  • curl-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:7d04dfb39ce3d69fe5ffd2762df6cc260f45e299
  • curl-minimal-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:6291c5762f9fe751c70597c8a2ce9d0702277539
  • libcurl-7.61.1-22.el8.tuxcare.els7.i686.rpm
    sha:dae4642cedefcfce9b4a85de0ad0cd31558c2b2b
  • libcurl-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:ffd54bd8b834e04feede6aa9ba7328211b290505
  • libcurl-devel-7.61.1-22.el8.tuxcare.els7.i686.rpm
    sha:4c72ba97189c2cc81ac4f48992c2927fb8243c23
  • libcurl-devel-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:742e0b2700d35bfa64421cd579bbd775a5d5b6e3
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els7.i686.rpm
    sha:44d43844daac6fef92d3f98c1c232d4226af072f
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els7.x86_64.rpm
    sha:5621d2ab9f9ca5fe84f8265e77fee723981cdf4f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.