[CLSA-2023:1688069201] curl: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2023-06-29
Description:
- CVE-2023-28322: fix errouneous behaviour and possible use-after-free due to mess in upload/method handling - CVE-2023-28321: fix incorrect IDN wildcard match due to errouneous wildcard logic handling; drop support for wildcards in the middle of domain name - Update certificates used on test HTTPS server
Updated packages:
  • curl-7.61.1-22.el8.tuxcare.els10.x86_64.rpm
    sha:598c1da1e5a12715e530ab79a1b6c328af0bec88
  • curl-minimal-7.61.1-22.el8.tuxcare.els10.x86_64.rpm
    sha:f5ae57f504c45e8d6dd195bd8a0b6e5bbcc4c069
  • libcurl-7.61.1-22.el8.tuxcare.els10.i686.rpm
    sha:10857ffab4b082783142c0b7c04e239a12bafc80
  • libcurl-7.61.1-22.el8.tuxcare.els10.x86_64.rpm
    sha:43d703512d52d515384abe18ba7774ac09db643c
  • libcurl-devel-7.61.1-22.el8.tuxcare.els10.i686.rpm
    sha:c370049b78809292b5747c36c41101028a3a01c3
  • libcurl-devel-7.61.1-22.el8.tuxcare.els10.x86_64.rpm
    sha:301816fce0fd57669a5066c2cf0e8840fee55474
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els10.i686.rpm
    sha:cdc564049335980df41877a613a77e07596bf0d1
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els10.x86_64.rpm
    sha:d2910b6a0faa7cce4b505d1260f29b0a981afa55
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.