ELBA-2024-2406

ELBA-2024-2406 - curl bug fix and enhancement update

Type:BUG
Severity:NA
Release Date:2024-05-02

Description


[7.76.1-29]
- rebuild for 9.4 GA

[7.76.1-28]
- return error if hostname too long for remote resolve (CVE-2023-38545)
- fix cookie injection with none file (CVE-2023-38546)
- cap SFTP packet size sent (RHEL-14697)
- lowercase the domain names before PSL checks (CVE-2023-46218)

[7.76.1-27]
- when keyboard-interactive auth fails, try password (#2229800)




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) curl-7.76.1-29.el9_4.src.rpm9e286b31f84d45d14938fef64cc475c3-ol9_aarch64_appstream
curl-7.76.1-29.el9_4.src.rpm9e286b31f84d45d14938fef64cc475c3-ol9_aarch64_baseos_latest
curl-7.76.1-29.el9_4.src.rpm9e286b31f84d45d14938fef64cc475c3-ol9_aarch64_u4_baseos_base
curl-7.76.1-29.el9_4.aarch64.rpm4ca65398e4c0cf809d98029587524134-ol9_aarch64_baseos_latest
curl-7.76.1-29.el9_4.aarch64.rpm4ca65398e4c0cf809d98029587524134-ol9_aarch64_u4_baseos_base
curl-minimal-7.76.1-29.el9_4.aarch64.rpm88d8d0040579c193f0e8d6808e215a34-ol9_aarch64_baseos_latest
curl-minimal-7.76.1-29.el9_4.aarch64.rpm88d8d0040579c193f0e8d6808e215a34-ol9_aarch64_u4_baseos_base
libcurl-7.76.1-29.el9_4.aarch64.rpmb63aeecc55432f681bf7fce9314d893b-ol9_aarch64_baseos_latest
libcurl-7.76.1-29.el9_4.aarch64.rpmb63aeecc55432f681bf7fce9314d893b-ol9_aarch64_u4_baseos_base
libcurl-devel-7.76.1-29.el9_4.aarch64.rpm330d297d082039720bdc754b75a82696-ol9_aarch64_appstream
libcurl-minimal-7.76.1-29.el9_4.aarch64.rpmdd7c5b2cdb3d075f393060f4179cf70c-ol9_aarch64_baseos_latest
libcurl-minimal-7.76.1-29.el9_4.aarch64.rpmdd7c5b2cdb3d075f393060f4179cf70c-ol9_aarch64_u4_baseos_base
Oracle Linux 9 (x86_64) curl-7.76.1-29.el9_4.src.rpm9e286b31f84d45d14938fef64cc475c3-ol9_x86_64_appstream
curl-7.76.1-29.el9_4.src.rpm9e286b31f84d45d14938fef64cc475c3-ol9_x86_64_baseos_latest
curl-7.76.1-29.el9_4.src.rpm9e286b31f84d45d14938fef64cc475c3-ol9_x86_64_u4_baseos_base
curl-7.76.1-29.el9_4.x86_64.rpmf67286199a4ce75e0f2ac76792261797-ol9_x86_64_baseos_latest
curl-7.76.1-29.el9_4.x86_64.rpmf67286199a4ce75e0f2ac76792261797-ol9_x86_64_u4_baseos_base
curl-minimal-7.76.1-29.el9_4.x86_64.rpmf24c1e959ea695a828a72aa4148210d0-ol9_x86_64_baseos_latest
curl-minimal-7.76.1-29.el9_4.x86_64.rpmf24c1e959ea695a828a72aa4148210d0-ol9_x86_64_u4_baseos_base
libcurl-7.76.1-29.el9_4.i686.rpm8572858267ffc43f8d63438387215c26-ol9_x86_64_baseos_latest
libcurl-7.76.1-29.el9_4.i686.rpm8572858267ffc43f8d63438387215c26-ol9_x86_64_u4_baseos_base
libcurl-7.76.1-29.el9_4.x86_64.rpm845724764318bbf3964516d4153b5ba3-ol9_x86_64_baseos_latest
libcurl-7.76.1-29.el9_4.x86_64.rpm845724764318bbf3964516d4153b5ba3-ol9_x86_64_u4_baseos_base
libcurl-devel-7.76.1-29.el9_4.i686.rpmae5919a6d666c81953002aa0e0ee3aec-ol9_x86_64_appstream
libcurl-devel-7.76.1-29.el9_4.x86_64.rpm8624b7c050d431ae0f4b33b0c689fbed-ol9_x86_64_appstream
libcurl-minimal-7.76.1-29.el9_4.i686.rpm5ed63bf1e2a343d1ed181c1aa976d9bb-ol9_x86_64_baseos_latest
libcurl-minimal-7.76.1-29.el9_4.i686.rpm5ed63bf1e2a343d1ed181c1aa976d9bb-ol9_x86_64_u4_baseos_base
libcurl-minimal-7.76.1-29.el9_4.x86_64.rpmb4eecd359d541c5863ed998e272e7163-ol9_x86_64_baseos_latest
libcurl-minimal-7.76.1-29.el9_4.x86_64.rpmb4eecd359d541c5863ed998e272e7163-ol9_x86_64_u4_baseos_base



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete