[ubuntu/oracular-security] curl 8.9.1-2ubuntu2.1 (Accepted)

Rodrigo Figueiredo Zaiden rodrigo.zaiden at canonical.com
Mon Nov 18 15:26:33 UTC 2024


curl (8.9.1-2ubuntu2.1) oracular-security; urgency=medium

  * SECURITY UPDATE: HSTS expiry overwrites parent cache entry.
    - debian/patches/CVE-2024-9681.patch: Add bestsub, blen, and hostname
      comparison in lib/hsts.c.
    - CVE-2024-9681

Date: 2024-11-06 18:00:18.688026+00:00
Changed-By: Hlib Korzhynskyy <hlib.korzhynskyy at canonical.com>
Signed-By: Rodrigo Figueiredo Zaiden <rodrigo.zaiden at canonical.com>
https://launchpad.net/ubuntu/+source/curl/8.9.1-2ubuntu2.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the oracular-changes mailing list