[ubuntu/maverick-security] curl 7.21.0-1ubuntu1.3 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Tue Jan 24 21:03:54 UTC 2012


curl (7.21.0-1ubuntu1.3) maverick-security; urgency=low

  * SECURITY UPDATE: URL sanitization vulnerability
    - debian/patches/CVE-2012-0036.patch: reject URLs with embedded control
      codes in lib/{escape.h,escape.c,imap.c,pop3.c,smtp.c}.
    - CVE-2012-0036

Date: Tue, 24 Jan 2012 08:29:10 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/maverick/+source/curl/7.21.0-1ubuntu1.3
-------------- next part --------------
Format: 1.8
Date: Tue, 24 Jan 2012 08:29:10 -0500
Source: curl
Binary: curl libcurl3 libcurl3-gnutls libcurl4-openssl-dev libcurl4-gnutls-dev libcurl3-dbg
Architecture: source
Version: 7.21.0-1ubuntu1.3
Distribution: maverick-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 curl       - Get a file from an HTTP, HTTPS or FTP server
 libcurl3   - Multi-protocol file transfer library (OpenSSL)
 libcurl3-dbg - libcurl compiled with debug symbols
 libcurl3-gnutls - Multi-protocol file transfer library (GnuTLS)
 libcurl4-gnutls-dev - Development files and documentation for libcurl (GnuTLS)
 libcurl4-openssl-dev - Development files and documentation for libcurl (OpenSSL)
Changes: 
 curl (7.21.0-1ubuntu1.3) maverick-security; urgency=low
 .
   * SECURITY UPDATE: URL sanitization vulnerability
     - debian/patches/CVE-2012-0036.patch: reject URLs with embedded control
       codes in lib/{escape.h,escape.c,imap.c,pop3.c,smtp.c}.
     - CVE-2012-0036
Checksums-Sha1: 
 5d9b01d17d39f9109e40bd1ba62506269ebfd4cc 2221 curl_7.21.0-1ubuntu1.3.dsc
 255237d2fe49a4a667087d1c29d590226b7fedb0 96854 curl_7.21.0-1ubuntu1.3.debian.tar.gz
Checksums-Sha256: 
 1867a3a2c2d4c184aba0b8c7f5eb33bf63eb6a81b291f90e8b32d348bae00522 2221 curl_7.21.0-1ubuntu1.3.dsc
 f35d2daf96e2acc5a372917d087d0a0c36885e6e04fb77c10889ee2783065c21 96854 curl_7.21.0-1ubuntu1.3.debian.tar.gz
Files: 
 2ecf757b4236ea18f58a00f72be6f13b 2221 web optional curl_7.21.0-1ubuntu1.3.dsc
 f01411fb6249104ebdad14f4cb05e2a4 96854 web optional curl_7.21.0-1ubuntu1.3.debian.tar.gz
Original-Maintainer: Ramakrishnan Muthukrishnan <rkrishnan at debian.org>


More information about the Maverick-changes mailing list