[ubuntu/mantic-updates] curl 8.2.1-1ubuntu3.3 (Accepted)

Ubuntu Archive Robot ubuntu-archive-robot at lists.canonical.com
Wed Mar 27 15:29:09 UTC 2024


curl (8.2.1-1ubuntu3.3) mantic-security; urgency=medium

  * SECURITY UPDATE: Usage of disabled protocol
    - debian/patches/CVE-2024-2004.patch: fix disabling all protocols in
      lib/setopt.c, tests/data/Makefile.inc, tests/data/test1474.
    - CVE-2024-2004
  * SECURITY UPDATE: HTTP/2 push headers memory-leak
    - debian/patches/CVE-2024-2398.patch: push headers better cleanup in
      lib/http2.c.
    - CVE-2024-2398
  * debian/patches/fix_expired_test.patch: update cookie expiry dates to
    far in the future to fix expired date in tests/data/test420.

Date: 2024-03-19 16:56:20.405221+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
Signed-By: Ubuntu Archive Robot <ubuntu-archive-robot at lists.canonical.com>
https://launchpad.net/ubuntu/+source/curl/8.2.1-1ubuntu3.3
-------------- next part --------------
Sorry, changesfile not available.


More information about the mantic-changes mailing list