[ubuntu/maverick-security] curl 7.21.0-1ubuntu1.3 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Tue Jan 24 21:03:54 UTC 2012
curl (7.21.0-1ubuntu1.3) maverick-security; urgency=low
* SECURITY UPDATE: URL sanitization vulnerability
- debian/patches/CVE-2012-0036.patch: reject URLs with embedded control
codes in lib/{escape.h,escape.c,imap.c,pop3.c,smtp.c}.
- CVE-2012-0036
Date: Tue, 24 Jan 2012 08:29:10 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/maverick/+source/curl/7.21.0-1ubuntu1.3
-------------- next part --------------
Format: 1.8
Date: Tue, 24 Jan 2012 08:29:10 -0500
Source: curl
Binary: curl libcurl3 libcurl3-gnutls libcurl4-openssl-dev libcurl4-gnutls-dev libcurl3-dbg
Architecture: source
Version: 7.21.0-1ubuntu1.3
Distribution: maverick-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
curl - Get a file from an HTTP, HTTPS or FTP server
libcurl3 - Multi-protocol file transfer library (OpenSSL)
libcurl3-dbg - libcurl compiled with debug symbols
libcurl3-gnutls - Multi-protocol file transfer library (GnuTLS)
libcurl4-gnutls-dev - Development files and documentation for libcurl (GnuTLS)
libcurl4-openssl-dev - Development files and documentation for libcurl (OpenSSL)
Changes:
curl (7.21.0-1ubuntu1.3) maverick-security; urgency=low
.
* SECURITY UPDATE: URL sanitization vulnerability
- debian/patches/CVE-2012-0036.patch: reject URLs with embedded control
codes in lib/{escape.h,escape.c,imap.c,pop3.c,smtp.c}.
- CVE-2012-0036
Checksums-Sha1:
5d9b01d17d39f9109e40bd1ba62506269ebfd4cc 2221 curl_7.21.0-1ubuntu1.3.dsc
255237d2fe49a4a667087d1c29d590226b7fedb0 96854 curl_7.21.0-1ubuntu1.3.debian.tar.gz
Checksums-Sha256:
1867a3a2c2d4c184aba0b8c7f5eb33bf63eb6a81b291f90e8b32d348bae00522 2221 curl_7.21.0-1ubuntu1.3.dsc
f35d2daf96e2acc5a372917d087d0a0c36885e6e04fb77c10889ee2783065c21 96854 curl_7.21.0-1ubuntu1.3.debian.tar.gz
Files:
2ecf757b4236ea18f58a00f72be6f13b 2221 web optional curl_7.21.0-1ubuntu1.3.dsc
f01411fb6249104ebdad14f4cb05e2a4 96854 web optional curl_7.21.0-1ubuntu1.3.debian.tar.gz
Original-Maintainer: Ramakrishnan Muthukrishnan <rkrishnan at debian.org>
More information about the Maverick-changes
mailing list