Format: 1.8 Date: Mon, 17 Jul 2023 07:53:10 -0400 Source: curl Binary: curl libcurl3-gnutls libcurl3-nss libcurl4 libcurl4-gnutls-dev libcurl4-nss-dev libcurl4-openssl-dev Built-For-Profiles: noudeb Architecture: ppc64el Version: 7.88.1-8ubuntu2.1 Distribution: lunar Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: curl - command line tool for transferring data with URL syntax libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.88.1-8ubuntu2.1) lunar-security; urgency=medium . * SECURITY UPDATE: improper certificate validation vulnerability - debian/patches/CVE-2023-28321.patch: fix host name wildcard checking in lib/vtls/hostcheck.c, tests/data/test1397, tests/unit/unit1397.c. - CVE-2023-28321 * SECURITY UPDATE: information disclosure vulnerability - debian/patches/CVE-2023-28322.patch: unify the upload/method handling in lib/curl_rtmp.c, lib/file.c, lib/ftp.c, lib/http.c, lib/imap.c, lib/rtsp.c, lib/setopt.c, lib/smb.c, lib/smtp.c, lib/tftp.c, lib/transfer.c, lib/urldata.h, lib/vssh/libssh.c, lib/vssh/libssh2.c, lib/vssh/wolfssh.c. - CVE-2023-28322 * SECURITY UPDATE: fopen race condition - debian/patches/CVE-2023-32001.patch: fix race in lib/fopen.c. - CVE-2023-32001 Checksums-Sha1: 77d1230788d7079aa8e22abe60b811a2acb49003 180178 curl-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb c8ab74c9d5dfd62939c0933178516b30ec8bcc87 12914 curl_7.88.1-8ubuntu2.1_ppc64el.buildinfo bed22a59a7632b2457a466bc0334edb31ea1e2c4 215278 curl_7.88.1-8ubuntu2.1_ppc64el.deb 70a98c0c4c292def5fc6489a121cabc42df43406 1244008 libcurl3-gnutls-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb 464c5a50629e115e0da44c998349ef0b5f805a7d 369650 libcurl3-gnutls_7.88.1-8ubuntu2.1_ppc64el.deb f5880f461384d6b04d56fe7b31b590255dbb6f25 1291548 libcurl3-nss-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb 1cfd2f4dfa66910af6ad36675bbbe51db610f000 380764 libcurl3-nss_7.88.1-8ubuntu2.1_ppc64el.deb 2b74640680a18a2e1d2bd2629a7f02253d7b45fd 1268972 libcurl4-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb 9e7b1b52bef2a911ca89c559ce8b2af5154719cd 476176 libcurl4-gnutls-dev_7.88.1-8ubuntu2.1_ppc64el.deb f6e5f96c6a0f98bc1c9411591395c5b211ccf7e1 489434 libcurl4-nss-dev_7.88.1-8ubuntu2.1_ppc64el.deb cca388570f64a97db8115cc65e0bea5a3e530e1b 481784 libcurl4-openssl-dev_7.88.1-8ubuntu2.1_ppc64el.deb 8595ecc01d5171dff4200cef62d9225986efb8f9 376700 libcurl4_7.88.1-8ubuntu2.1_ppc64el.deb Checksums-Sha256: 1ee70d26d8cb2ed530b5d627b21bdf2b54711a434ed68ce97ceec41e57f3ab6b 180178 curl-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb da668481f57feaae6f2d28cebc33f37908d33a45b245b80a38c3159885e741fa 12914 curl_7.88.1-8ubuntu2.1_ppc64el.buildinfo 25a41dec3d407635729f2767bd79b7f8867a660287a05bba794eb8dbd8fcad9e 215278 curl_7.88.1-8ubuntu2.1_ppc64el.deb a324e467007221a09b47398bb3be4b2b67227212dd0b89f1b441922b1f79cf03 1244008 libcurl3-gnutls-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb 2649487cbdb048904c8787d79a0e602e9b466ba87c044316ce4e70f9427d4051 369650 libcurl3-gnutls_7.88.1-8ubuntu2.1_ppc64el.deb 2e6f0ed08a70dcd5e454c990b1a74fa171b16b17d4ec5810021ad7222a0d10b5 1291548 libcurl3-nss-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb b98220976a24f10643df1f9d4146114e2c68f16ceea1cd8723dcf2804dc813e5 380764 libcurl3-nss_7.88.1-8ubuntu2.1_ppc64el.deb 2e0a4d364d618dee48c3086cc648f31ad394f15eba708274ca860789c70849d8 1268972 libcurl4-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb e377467c4594440e3703eab6f9e56dd8d5f40de62b5a25016b10ca66bc984de9 476176 libcurl4-gnutls-dev_7.88.1-8ubuntu2.1_ppc64el.deb 9d07fa93008e28a24f4a2e30598451220210a968897ff44ae4093666c6409400 489434 libcurl4-nss-dev_7.88.1-8ubuntu2.1_ppc64el.deb 9744115841b849f9ec0bb7bfb8beb88f04ef602ed953871f58be9f92f7d52968 481784 libcurl4-openssl-dev_7.88.1-8ubuntu2.1_ppc64el.deb d1c32c477af6016e39206d54e0b852dccca226e78861ee6f795b3de8092141f5 376700 libcurl4_7.88.1-8ubuntu2.1_ppc64el.deb Files: c7530b1009aaae0e81e69b962c3c4512 180178 debug optional curl-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb d530d7def40cb7cda070a55164f09db9 12914 web optional curl_7.88.1-8ubuntu2.1_ppc64el.buildinfo 7302afc9e423a295b286ec0df9b18f57 215278 web optional curl_7.88.1-8ubuntu2.1_ppc64el.deb 5896f4ff71708c89a4a5b2f1d36a69ac 1244008 debug optional libcurl3-gnutls-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb dbb1aba97bce8b8ab767c1baac830e25 369650 libs optional libcurl3-gnutls_7.88.1-8ubuntu2.1_ppc64el.deb d24e6ad5ae4ad8a8528cd0b2cdfaa006 1291548 debug optional libcurl3-nss-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb 24e87f4bdec1b572190baf6a020a4e27 380764 libs optional libcurl3-nss_7.88.1-8ubuntu2.1_ppc64el.deb 54be663a4209b83941bc03b11e8a2053 1268972 debug optional libcurl4-dbgsym_7.88.1-8ubuntu2.1_ppc64el.ddeb a31fde32deafe23a40e9e2e6d0530a48 476176 libdevel optional libcurl4-gnutls-dev_7.88.1-8ubuntu2.1_ppc64el.deb 1814a47b214341675ece66565b96ab47 489434 libdevel optional libcurl4-nss-dev_7.88.1-8ubuntu2.1_ppc64el.deb 4f08dc9171a3ee18ec2353e098af1cdc 481784 libdevel optional libcurl4-openssl-dev_7.88.1-8ubuntu2.1_ppc64el.deb dd843ce6f46a40f2ae55722b385b4a41 376700 libs optional libcurl4_7.88.1-8ubuntu2.1_ppc64el.deb Original-Maintainer: Alessandro Ghedini