Format: 1.8 Date: Mon, 17 Jul 2023 07:53:10 -0400 Source: curl Binary: curl libcurl3-gnutls libcurl3-nss libcurl4 libcurl4-gnutls-dev libcurl4-nss-dev libcurl4-openssl-dev Built-For-Profiles: noudeb Architecture: s390x Version: 7.88.1-8ubuntu2.1 Distribution: lunar Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: curl - command line tool for transferring data with URL syntax libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.88.1-8ubuntu2.1) lunar-security; urgency=medium . * SECURITY UPDATE: improper certificate validation vulnerability - debian/patches/CVE-2023-28321.patch: fix host name wildcard checking in lib/vtls/hostcheck.c, tests/data/test1397, tests/unit/unit1397.c. - CVE-2023-28321 * SECURITY UPDATE: information disclosure vulnerability - debian/patches/CVE-2023-28322.patch: unify the upload/method handling in lib/curl_rtmp.c, lib/file.c, lib/ftp.c, lib/http.c, lib/imap.c, lib/rtsp.c, lib/setopt.c, lib/smb.c, lib/smtp.c, lib/tftp.c, lib/transfer.c, lib/urldata.h, lib/vssh/libssh.c, lib/vssh/libssh2.c, lib/vssh/wolfssh.c. - CVE-2023-28322 * SECURITY UPDATE: fopen race condition - debian/patches/CVE-2023-32001.patch: fix race in lib/fopen.c. - CVE-2023-32001 Checksums-Sha1: dc3a7a0335cc35f9214a90947167f65fb9f4b3c5 168458 curl-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb 208d5355932c89c933f7fdf20991bb6a379f124c 12758 curl_7.88.1-8ubuntu2.1_s390x.buildinfo 0e334c1744cca580f8cacf34ee4e5e963a94e451 206182 curl_7.88.1-8ubuntu2.1_s390x.deb 875b791485e30871a6736c7cc497715a09ac53ed 1078914 libcurl3-gnutls-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb 71e57ee9baf123d2b2624ff7a11d51e300b83519 293644 libcurl3-gnutls_7.88.1-8ubuntu2.1_s390x.deb 9d32ba78f27500f28e5bb99be952beb3c544b7ff 1124414 libcurl3-nss-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb d3a05b1dd015ae87d0e15d38960da0c376c2db5d 303790 libcurl3-nss_7.88.1-8ubuntu2.1_s390x.deb 98a438ba5a08449ddbb2268dd73c8ff4a3ac688a 1106774 libcurl4-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb 73f99fc042507fd6ebc17e04b30756e3f511ed64 398732 libcurl4-gnutls-dev_7.88.1-8ubuntu2.1_s390x.deb c09cdc4038cc5baaaca51e6b8f8e73706c92216f 408794 libcurl4-nss-dev_7.88.1-8ubuntu2.1_s390x.deb d0fbbf4cc1c1584e75925fbe96d3594eaec96396 404996 libcurl4-openssl-dev_7.88.1-8ubuntu2.1_s390x.deb 7fbc7d55464156da5b8f81611dca908522f80312 299494 libcurl4_7.88.1-8ubuntu2.1_s390x.deb Checksums-Sha256: 3188bd91beab785703483026ee7e3c740a86aec9d3418cbe6f8a9d4e364df0d7 168458 curl-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb 37fc77a19aeed68bacb0349efbef0f708aae468f9417452f5048917a56b5f444 12758 curl_7.88.1-8ubuntu2.1_s390x.buildinfo e5b906000c0d80d9b7a670905a7fb2151e7f1d237603da4d32d3697289bcf9fa 206182 curl_7.88.1-8ubuntu2.1_s390x.deb 1a2872f30a8b9850cf6853ed15e250c84597f8ef93d9a402c2bac8ac674d3acc 1078914 libcurl3-gnutls-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb 5fc21640851c75643fc7fb96682213b5b191d4f6b46a2eb66875086d1cff2f84 293644 libcurl3-gnutls_7.88.1-8ubuntu2.1_s390x.deb 072ed2c79cad3f5aa8d0a66dee13405b6d29c7b1f737a5adb5dfdcfef9603001 1124414 libcurl3-nss-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb e90a679d87e8402a5f8462a5e768a24aa153587a2d0bb1e2c84e4f1b1933dd17 303790 libcurl3-nss_7.88.1-8ubuntu2.1_s390x.deb 3454660bccb3de6805253f93b5c8f4f0c498953268e553e455eaf72a3f8a872f 1106774 libcurl4-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb 2c3bc5f5faff9fa0b45968ff78ded2260a5b4b85a71a4b77f04171e2934b38d1 398732 libcurl4-gnutls-dev_7.88.1-8ubuntu2.1_s390x.deb e87df741e6e2c20a9a1afd9eaa002678ed07691d3ffd0ed1f2e2e09e21c837de 408794 libcurl4-nss-dev_7.88.1-8ubuntu2.1_s390x.deb e7e41ae07f0c7867672da5f8017c68382121592a59575edeac546e0a0c4b8b6f 404996 libcurl4-openssl-dev_7.88.1-8ubuntu2.1_s390x.deb 9f441ce3480a7c4593d9d1194d1d6b7a5566d9448886cb52e0d7d4b709f727e8 299494 libcurl4_7.88.1-8ubuntu2.1_s390x.deb Files: d50291ec58a0dd03958749bbe89b18db 168458 debug optional curl-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb d764bfc30058b6fb2368fcd33bb7d349 12758 web optional curl_7.88.1-8ubuntu2.1_s390x.buildinfo 1fc6fcddf31f9cc17f4a2fafbcb33680 206182 web optional curl_7.88.1-8ubuntu2.1_s390x.deb c67e94115acdcf6eee9de40fb9c67bdd 1078914 debug optional libcurl3-gnutls-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb e5d2650820300be07ccb72079b4435a5 293644 libs optional libcurl3-gnutls_7.88.1-8ubuntu2.1_s390x.deb ca44b8943a38a8f4f21ee71fa18c126e 1124414 debug optional libcurl3-nss-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb 46c0116e76e20fd6e3a54ef8aefaa27f 303790 libs optional libcurl3-nss_7.88.1-8ubuntu2.1_s390x.deb 75b0e3f4ee3305c8a6eb891df6863a77 1106774 debug optional libcurl4-dbgsym_7.88.1-8ubuntu2.1_s390x.ddeb a06ee0d057cff1264b70ac00690e49c6 398732 libdevel optional libcurl4-gnutls-dev_7.88.1-8ubuntu2.1_s390x.deb c0fb9cc38d7a53afebe63d4c7666b2da 408794 libdevel optional libcurl4-nss-dev_7.88.1-8ubuntu2.1_s390x.deb 03aaadc412e68f55097f2100b7a29751 404996 libdevel optional libcurl4-openssl-dev_7.88.1-8ubuntu2.1_s390x.deb ed8037ad51d211a683b4416964ccd9a8 299494 libs optional libcurl4_7.88.1-8ubuntu2.1_s390x.deb Original-Maintainer: Alessandro Ghedini