Format: 1.8 Date: Mon, 29 Oct 2018 08:15:06 -0400 Source: curl Binary: curl curl-udeb libcurl3 libcurl3-udeb libcurl3-gnutls libcurl3-nss libcurl4-openssl-dev libcurl4-gnutls-dev libcurl4-nss-dev libcurl3-dbg libcurl4-doc Architecture: armhf Version: 7.35.0-1ubuntu2.19 Distribution: trusty Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: curl - command line tool for transferring data with URL syntax curl-udeb - Get a file from an HTTP, HTTPS or FTP server (udeb) libcurl3 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl3-dbg - debugging symbols for libcurl (OpenSSL, GnuTLS and NSS flavours) libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl3-udeb - Multi-protocol file transfer library (OpenSSL) (udeb) libcurl4-doc - documentation for libcurl libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.35.0-1ubuntu2.19) trusty-security; urgency=medium . * SECURITY UPDATE: SASL password overflow via integer overflow - debian/patches/CVE-2018-16839-pre1.patch: prevent size overflows in lib/curl_sasl.c. - debian/patches/CVE-2018-16839-pre2.patch: fix integer overflow check in lib/curl_ntlm_core.c, lib/curl_setup.h, lib/curl_sasl.c. - debian/patches/CVE-2018-16839.patch: fix check in lib/curl_sasl.c. - CVE-2018-16839 * SECURITY UPDATE: warning message out-of-buffer read - debian/patches/oob-read.patch: fix bad arithmetic in src/tool_msgs.c. - CVE number pending Checksums-Sha1: 72d7b0caf9798c55d2a389dcfca8f1d6eae7e52d 119144 curl_7.35.0-1ubuntu2.19_armhf.deb 4ad365f87e1d697b45011a16cdcd3e2131d5f4f9 958 curl-udeb_7.35.0-1ubuntu2.19_armhf.udeb b3d075dc1d07beb74092acd26d7e6debf5449afa 150894 libcurl3_7.35.0-1ubuntu2.19_armhf.deb 3dfe0c98c4f6b8832a5248d866946ead2b469824 844 libcurl3-udeb_7.35.0-1ubuntu2.19_armhf.udeb 6ce1b7f8ebb89b3f28bcf518efd01719c415e523 144684 libcurl3-gnutls_7.35.0-1ubuntu2.19_armhf.deb f27eb2e4b22066a1bd76dfc066e06a13d4ca1662 154536 libcurl3-nss_7.35.0-1ubuntu2.19_armhf.deb cac33dde06ca7407bbc879a061486d525e4ae031 216176 libcurl4-openssl-dev_7.35.0-1ubuntu2.19_armhf.deb eda734e743df945515c5ea2f66e829b25f14040a 208910 libcurl4-gnutls-dev_7.35.0-1ubuntu2.19_armhf.deb df598d142980a38b64c1148292efefd4420efd4e 220356 libcurl4-nss-dev_7.35.0-1ubuntu2.19_armhf.deb 94fa1973824adf9ab30e2d25cf3e8f00f75bd074 3159992 libcurl3-dbg_7.35.0-1ubuntu2.19_armhf.deb cc72e7d1ff1e375399d389add7db43a20e25e745 1080 curl-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb b098574d17a2e05dab2b562bab5a44fa8d967c93 984 curl-udeb-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 931a0767b9407aa009df2e4f24c66b6ac4405ac0 1200 libcurl3-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb e01c4b6213a49e98ab5e28e9faf74fda1f43137c 904 libcurl3-udeb-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 1db8932a5ec02945bedd97e1b3b537652bf26554 1206 libcurl3-gnutls-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb d2300dce506d5c297dc4507fcfa4e0c49f31656b 1202 libcurl3-nss-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 13336a5adfc6bd8073844453121389b7bb363748 1282 libcurl4-openssl-dev-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 57e33034f82cb2072ae118c4b666761d9604dddc 1284 libcurl4-gnutls-dev-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb bdba445344be88a7a90e82953fa5fe2969cec5ed 1284 libcurl4-nss-dev-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb Checksums-Sha256: c5a610fc28d7b60a6a410addbaae68409ccc031e70d835a4e6157e48658d6626 119144 curl_7.35.0-1ubuntu2.19_armhf.deb 7de8ed6205436a43fd5372d7fda7206f6cd1f24994987ec1f4e1b6ef862c33de 958 curl-udeb_7.35.0-1ubuntu2.19_armhf.udeb 41338442178147545c137da05b62915e92be8bdec3016abb5167584e3f414af1 150894 libcurl3_7.35.0-1ubuntu2.19_armhf.deb 3f9faf715591d6a39a76ed1e002007b1c9037b7a82d38cb17fc1d7666d3e8727 844 libcurl3-udeb_7.35.0-1ubuntu2.19_armhf.udeb f4a1a99fd5806f349a3bd51c04cc9ca8a5f44a461512ad3b18e36369a9baaeba 144684 libcurl3-gnutls_7.35.0-1ubuntu2.19_armhf.deb e6f9cf75973e9d29c81cfdd46f166aeb877c24bbbcf143a400b41b7a463a23b5 154536 libcurl3-nss_7.35.0-1ubuntu2.19_armhf.deb bf2328e9ab456d56557952eb87822d25562c38b56f5aad5ec1578745d292500b 216176 libcurl4-openssl-dev_7.35.0-1ubuntu2.19_armhf.deb f016dd02a6c2d695829b6516ba6d7c1f4af0cd3cef69072439135124a96258de 208910 libcurl4-gnutls-dev_7.35.0-1ubuntu2.19_armhf.deb 45315243116a4468414adde3086dd463cf6a0282956635cd2b57cb4ea01f7f7a 220356 libcurl4-nss-dev_7.35.0-1ubuntu2.19_armhf.deb 785c1399589711b2bbfcf22b91edc95c6becdd173d2e2b547dc6264a5215fc2e 3159992 libcurl3-dbg_7.35.0-1ubuntu2.19_armhf.deb 2c8cabe3c8fdd03dc1152bff32cd333804ebcbb52986721070c33c051f09798f 1080 curl-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb cffad7600b2a5130c898adb3c4625d0e5ec95773a3a2dad7891c33a8ec875958 984 curl-udeb-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 103165c7fd90b61eec310a893f6b82379d45f2dbdafdbe246cfd4e3978eb8675 1200 libcurl3-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 5bfcc16f55ae59a09f3e16438ce5be8e6e671ef54b91638c52dd2ca9c902c51e 904 libcurl3-udeb-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb fd1763de056b961009ea7abfb4acaf18339c6fe9a0d24505bce42ff357ef5478 1206 libcurl3-gnutls-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 252ea80957b19c91616de693fa50b7f3c860276c1d4b996d1540d433e18888b4 1202 libcurl3-nss-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 8710c3efe2204ef8c02a15561195b43e6537d857c67ca77a0cbc9631830e5762 1282 libcurl4-openssl-dev-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 1170e019b74534a4b1168064b67f0e16b7a23980ab6c6b93396f544c51daf6a4 1284 libcurl4-gnutls-dev-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 07308930db70f6c043401501b780afd432df28493c0d69a5a2da360179308d29 1284 libcurl4-nss-dev-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb Files: 046b62d2d02c34e38554a0f10723a002 119144 web optional curl_7.35.0-1ubuntu2.19_armhf.deb 3050dd5bc4db19ac97de0b8f179f83da 958 debian-installer optional curl-udeb_7.35.0-1ubuntu2.19_armhf.udeb 43979e9cebe0620b9b7eb5a53e6eb9a8 150894 libs optional libcurl3_7.35.0-1ubuntu2.19_armhf.deb 6e1be683795ffea0a98370f8fbdf7cb8 844 debian-installer optional libcurl3-udeb_7.35.0-1ubuntu2.19_armhf.udeb 81fe0e632b6b78bb10c3409cbe5c7bbd 144684 libs optional libcurl3-gnutls_7.35.0-1ubuntu2.19_armhf.deb 27a2d84593966c9b5e40b234fc2bc368 154536 libs optional libcurl3-nss_7.35.0-1ubuntu2.19_armhf.deb c918759f9c49ca74a9953697b7b9ae02 216176 libdevel optional libcurl4-openssl-dev_7.35.0-1ubuntu2.19_armhf.deb eddf9610bed5bd40ed559e9a53fe9d92 208910 libdevel optional libcurl4-gnutls-dev_7.35.0-1ubuntu2.19_armhf.deb c13cc1083dbe2de806d0f2d675cad89d 220356 libdevel optional libcurl4-nss-dev_7.35.0-1ubuntu2.19_armhf.deb 009ceaf2da66db2edfc5ab72453d6f9b 3159992 debug extra libcurl3-dbg_7.35.0-1ubuntu2.19_armhf.deb a40524222c4097628d5a208f24c71d1e 1080 web extra curl-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 117253dbb64fafc4245a2257da87b508 984 debian-installer extra curl-udeb-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 6f6cb30c3d20a42939cd6b0af538c1a1 1200 libs extra libcurl3-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb c6d9aa3192faca6da07d492e583c25f6 904 debian-installer extra libcurl3-udeb-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb e460e88e763c1f81c276a5092d4060c8 1206 libs extra libcurl3-gnutls-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 6adf6aa9a47bb14b5ede9a973a133f57 1202 libs extra libcurl3-nss-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 164a52bf6fc7121236f3b902a627d41f 1282 libdevel extra libcurl4-openssl-dev-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 27c8d9c64af7eda0989f5d78f2017e28 1284 libdevel extra libcurl4-gnutls-dev-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb 82441feb32ad7076b27eb4070376703a 1284 libdevel extra libcurl4-nss-dev-dbgsym_7.35.0-1ubuntu2.19_armhf.ddeb Original-Maintainer: Alessandro Ghedini Package-Type: udeb