[CLSA-2023:1685378052] curl: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2023-05-29
Description:
- CVE-2022-43552: smb/telnet: do not free the protocol struct in *_done() - CVE-2022-35252: cookie: reject cookies with "control bytes"
Updated packages:
  • curl-7.61.1-22.el8.tuxcare.els9.x86_64.rpm
    sha:7ad2894fb728eb71e094a119c2646c86b0765306
  • curl-minimal-7.61.1-22.el8.tuxcare.els9.x86_64.rpm
    sha:63a5b51405733f8771ed34d6017b6cb82f901a59
  • libcurl-7.61.1-22.el8.tuxcare.els9.i686.rpm
    sha:46e715da86da2cc9c4e3dde84596c8b7320bb588
  • libcurl-7.61.1-22.el8.tuxcare.els9.x86_64.rpm
    sha:8c2e9a85b21ffe23f640851d4e9f7aa48421dd27
  • libcurl-devel-7.61.1-22.el8.tuxcare.els9.i686.rpm
    sha:23cb2d5dbe4cf73c2fa6d443c5b6024f139c27ca
  • libcurl-devel-7.61.1-22.el8.tuxcare.els9.x86_64.rpm
    sha:125b8755575ff83e5c3ba29b72d8d2fd1cfef452
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els9.i686.rpm
    sha:ea010e72992a18efa3aa2937fa878c8090ed833a
  • libcurl-minimal-7.61.1-22.el8.tuxcare.els9.x86_64.rpm
    sha:73a0c649523f2e594cd28c485b65fbaff9bbdb9f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.