[CLSA-2023:1697463318] Fix CVE(s): CVE-2023-38546
Type:
security
Severity:
Moderate
Release date:
2023-10-16 13:35:22 UTC
Description:
* SECURITY UPDATE: сookie injection with none file - debian/patches/CVE-2023-38546.patch: remove unnecessary struct fields in lib/cookie.c - CVE-2023-38546
Updated packages:
  • curl_7.58.0-2ubuntu3.24+tuxcare.els2_amd64.deb
    sha:a5d133aa3cbbdf567f569cbe5580a719e55de844
  • libcurl3-gnutls_7.58.0-2ubuntu3.24+tuxcare.els2_amd64.deb
    sha:ed20a9e91fb480a15d78113c52160f6b091b1c91
  • libcurl3-nss_7.58.0-2ubuntu3.24+tuxcare.els2_amd64.deb
    sha:f272e2b70b8959a9352403a20fc2d69df3bc9c4f
  • libcurl4_7.58.0-2ubuntu3.24+tuxcare.els2_amd64.deb
    sha:b7da334c17824d75885f4537b92b00626745ca0f
  • libcurl4-doc_7.58.0-2ubuntu3.24+tuxcare.els2_all.deb
    sha:ec0eb3103a57fbd98699d7b009353c0aba7cfc7c
  • libcurl4-gnutls-dev_7.58.0-2ubuntu3.24+tuxcare.els2_amd64.deb
    sha:d4c83542b400ece023771aeadb7f4270d0d6945d
  • libcurl4-nss-dev_7.58.0-2ubuntu3.24+tuxcare.els2_amd64.deb
    sha:30f43bdaedc48e9f622ac2e9ae85c8720239d3bd
  • libcurl4-openssl-dev_7.58.0-2ubuntu3.24+tuxcare.els2_amd64.deb
    sha:44a90259b604f08c5709b2c3343cfa8503bafd14
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.