[ubuntu/natty-security] curl 7.21.3-1ubuntu1.5 (Accepted)
Marc Deslauriers
marc.deslauriers at ubuntu.com
Tue Jan 24 21:03:34 UTC 2012
curl (7.21.3-1ubuntu1.5) natty-security; urgency=low
* SECURITY UPDATE: URL sanitization vulnerability
- debian/patches/CVE-2012-0036.patch: reject URLs with embedded control
codes in lib/{escape.h,escape.c,imap.c,pop3.c,smtp.c}.
- CVE-2012-0036
Date: Tue, 24 Jan 2012 08:28:19 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/curl/7.21.3-1ubuntu1.5
-------------- next part --------------
Format: 1.8
Date: Tue, 24 Jan 2012 08:28:19 -0500
Source: curl
Binary: curl libcurl3 libcurl3-gnutls libcurl3-nss libcurl4-openssl-dev libcurl4-gnutls-dev libcurl4-nss-dev libcurl3-dbg
Architecture: source
Version: 7.21.3-1ubuntu1.5
Distribution: natty-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
curl - Get a file from an HTTP, HTTPS or FTP server
libcurl3 - Multi-protocol file transfer library (OpenSSL)
libcurl3-dbg - libcurl compiled with debug symbols
libcurl3-gnutls - Multi-protocol file transfer library (GnuTLS)
libcurl3-nss - Multi-protocol file transfer library (NSS)
libcurl4-gnutls-dev - Development files and documentation for libcurl (GnuTLS)
libcurl4-nss-dev - Development files and documentation for libcurl (NSS)
libcurl4-openssl-dev - Development files and documentation for libcurl (OpenSSL)
Changes:
curl (7.21.3-1ubuntu1.5) natty-security; urgency=low
.
* SECURITY UPDATE: URL sanitization vulnerability
- debian/patches/CVE-2012-0036.patch: reject URLs with embedded control
codes in lib/{escape.h,escape.c,imap.c,pop3.c,smtp.c}.
- CVE-2012-0036
Checksums-Sha1:
33113bac4b3de4b2e3b4535661c27c84d97eb356 2269 curl_7.21.3-1ubuntu1.5.dsc
dd6324895d2f7c83b46c5762a2a289b29df4b68c 100135 curl_7.21.3-1ubuntu1.5.debian.tar.gz
Checksums-Sha256:
daa3d0daca5188c09bc04bbd944364128320bad7da8317d409ae974cd8c8a019 2269 curl_7.21.3-1ubuntu1.5.dsc
5c82b86453ad0d9259921fb99d433e341952e2562dcfca8cfe38005ca03eb100 100135 curl_7.21.3-1ubuntu1.5.debian.tar.gz
Files:
48bff0b404ee947ec0f1d3b98b663565 2269 web optional curl_7.21.3-1ubuntu1.5.dsc
82ada76141457a63c255d55d166941fb 100135 web optional curl_7.21.3-1ubuntu1.5.debian.tar.gz
Original-Maintainer: Ramakrishnan Muthukrishnan <rkrishnan at debian.org>
More information about the Natty-changes
mailing list