[ubuntu/natty-security] curl 7.21.3-1ubuntu1.5 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Tue Jan 24 21:03:34 UTC 2012


curl (7.21.3-1ubuntu1.5) natty-security; urgency=low

  * SECURITY UPDATE: URL sanitization vulnerability
    - debian/patches/CVE-2012-0036.patch: reject URLs with embedded control
      codes in lib/{escape.h,escape.c,imap.c,pop3.c,smtp.c}.
    - CVE-2012-0036

Date: Tue, 24 Jan 2012 08:28:19 -0500
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/curl/7.21.3-1ubuntu1.5
-------------- next part --------------
Format: 1.8
Date: Tue, 24 Jan 2012 08:28:19 -0500
Source: curl
Binary: curl libcurl3 libcurl3-gnutls libcurl3-nss libcurl4-openssl-dev libcurl4-gnutls-dev libcurl4-nss-dev libcurl3-dbg
Architecture: source
Version: 7.21.3-1ubuntu1.5
Distribution: natty-security
Urgency: low
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description: 
 curl       - Get a file from an HTTP, HTTPS or FTP server
 libcurl3   - Multi-protocol file transfer library (OpenSSL)
 libcurl3-dbg - libcurl compiled with debug symbols
 libcurl3-gnutls - Multi-protocol file transfer library (GnuTLS)
 libcurl3-nss - Multi-protocol file transfer library (NSS)
 libcurl4-gnutls-dev - Development files and documentation for libcurl (GnuTLS)
 libcurl4-nss-dev - Development files and documentation for libcurl (NSS)
 libcurl4-openssl-dev - Development files and documentation for libcurl (OpenSSL)
Changes: 
 curl (7.21.3-1ubuntu1.5) natty-security; urgency=low
 .
   * SECURITY UPDATE: URL sanitization vulnerability
     - debian/patches/CVE-2012-0036.patch: reject URLs with embedded control
       codes in lib/{escape.h,escape.c,imap.c,pop3.c,smtp.c}.
     - CVE-2012-0036
Checksums-Sha1: 
 33113bac4b3de4b2e3b4535661c27c84d97eb356 2269 curl_7.21.3-1ubuntu1.5.dsc
 dd6324895d2f7c83b46c5762a2a289b29df4b68c 100135 curl_7.21.3-1ubuntu1.5.debian.tar.gz
Checksums-Sha256: 
 daa3d0daca5188c09bc04bbd944364128320bad7da8317d409ae974cd8c8a019 2269 curl_7.21.3-1ubuntu1.5.dsc
 5c82b86453ad0d9259921fb99d433e341952e2562dcfca8cfe38005ca03eb100 100135 curl_7.21.3-1ubuntu1.5.debian.tar.gz
Files: 
 48bff0b404ee947ec0f1d3b98b663565 2269 web optional curl_7.21.3-1ubuntu1.5.dsc
 82ada76141457a63c255d55d166941fb 100135 web optional curl_7.21.3-1ubuntu1.5.debian.tar.gz
Original-Maintainer: Ramakrishnan Muthukrishnan <rkrishnan at debian.org>


More information about the Natty-changes mailing list