[CLSA-2023:1697463486] Fix CVE(s): CVE-2023-38546
Type:
security
Severity:
Moderate
Release date:
2023-10-16 13:38:10 UTC
Description:
* SECURITY UPDATE: сookie injection with none file - debian/patches/CVE-2023-38546.patch: remove unnecessary struct fields in lib/cookie.c - CVE-2023-38546
Updated packages:
  • curl_7.47.0-1ubuntu2.23+tuxcare.els10_amd64.deb
    sha:30032cdd84b956a39416bd03e192465f837f3e2d
  • libcurl3_7.47.0-1ubuntu2.23+tuxcare.els10_amd64.deb
    sha:1fa1ea6b0ed6b0190610f6e4aa273672c097253e
  • libcurl3-gnutls_7.47.0-1ubuntu2.23+tuxcare.els10_amd64.deb
    sha:b7fb726f58fba75c66f5d3b98bdb7f2d70e9b7ce
  • libcurl3-nss_7.47.0-1ubuntu2.23+tuxcare.els10_amd64.deb
    sha:fbff9f0c00fbfee767fcc7b6cddb6c473ca407c4
  • libcurl4-doc_7.47.0-1ubuntu2.23+tuxcare.els10_all.deb
    sha:74af4169ded7e1c72b2f255804bb7b00cc22fdc5
  • libcurl4-gnutls-dev_7.47.0-1ubuntu2.23+tuxcare.els10_amd64.deb
    sha:d47fe407f3db88c77a23aca2fdf6ba80eb78e7b8
  • libcurl4-nss-dev_7.47.0-1ubuntu2.23+tuxcare.els10_amd64.deb
    sha:88ff955c274db4f5af72d35f37d99a62194feda5
  • libcurl4-openssl-dev_7.47.0-1ubuntu2.23+tuxcare.els10_amd64.deb
    sha:2e4161ff002c06914a7544e928b75eba2cae9d86
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.