[ubuntu/noble-security] curl 8.5.0-2ubuntu10.5 (Accepted)

Rodrigo Figueiredo Zaiden rodrigo.zaiden at canonical.com
Mon Nov 18 15:26:36 UTC 2024


curl (8.5.0-2ubuntu10.5) noble-security; urgency=medium

  * SECURITY UPDATE: HSTS expiry overwrites parent cache entry.
    - debian/patches/CVE-2024-9681.patch: Add bestsub, blen, and hostname
      comparison in lib/hsts.c.
    - CVE-2024-9681

Date: 2024-11-06 18:02:18.188218+00:00
Changed-By: Hlib Korzhynskyy <hlib.korzhynskyy at canonical.com>
Signed-By: Rodrigo Figueiredo Zaiden <rodrigo.zaiden at canonical.com>
https://launchpad.net/ubuntu/+source/curl/8.5.0-2ubuntu10.5
-------------- next part --------------
Sorry, changesfile not available.


More information about the noble-changes mailing list