[ubuntu/trusty-updates] curl 7.35.0-1ubuntu2.14 (Accepted)

Ubuntu Archive Robot cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk
Wed Jan 31 23:28:14 UTC 2018


curl (7.35.0-1ubuntu2.14) trusty-security; urgency=medium

  * SECURITY UPDATE: leak authentication data
    - debian/patches/CVE-2018-1000007.patch: prevent custom
      authorization headers in redirects in lib/http.c,
      lib/url.c, lib/urldata.h, tests/data/Makefile.in,
      tests/data/test317, tests/data/test318.
    - CVE-2018-1000007

Date: 2018-01-30 13:20:18.098257+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
Signed-By: Ubuntu Archive Robot <cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk>
https://launchpad.net/ubuntu/+source/curl/7.35.0-1ubuntu2.14
-------------- next part --------------
Sorry, changesfile not available.


More information about the Trusty-changes mailing list