Type: | SECURITY |
Severity: | LOW |
Release Date: | 2020-04-06 |
[7.29.0-57.0.1]
- Fix TFTP small blocksize heap buffer overflow (https://curl.haxx.se/docs/CVE-2019-5482.html)[CVE-2019-5482][Orabug: 30568724]
- Security Fixes [OraBug: 28939992]
- CVE-2016-8615 cookie injection for other servers (https://curl.haxx.se/docs/CVE-2016-8615.html)
- CVE-2016-8616 case insensitive password comparison (https://curl.haxx.se/docs/CVE-2016-8616.html)
- CVE-2016-8617 OOB write via unchecked multiplication (https://curl.haxx.se/docs/CVE-2016-8617.html)
- CVE-2016-8618 double-free in curl_maprintf (https://curl.haxx.se/docs/CVE-2016-8618.html)
- CVE-2016-8619 double-free in krb5 code (https://curl.haxx.se/docs/CVE-2016-8619.html)
- CVE-2016-8621 curl_getdate read out of bounds (https://curl.haxx.se/docs/CVE-2016-8621.html)
- CVE-2016-8622 URL unescape heap overflow via integer truncation (https://curl.haxx.se/docs/CVE-2016-8622.html)
- CVE-2016-8623 Use-after-free via shared cookies (https://curl.haxx.se/docs/CVE-2016-8623.html)
- CVE-2016-8624 invalid URL parsing with # (https://curl.haxx.se/docs/CVE-2016-8624.html)
[7.29.0-57]
- allow curl to POST from a char device (#1769307)
[7.29.0-56]
- fix auth failure with duplicated WWW-Authenticate header (#1754736)
[7.29.0-55]
- fix TFTP receive buffer overflow (CVE-2019-5436)
CVE-2019-5436 |
Release/Architecture | Filename | MD5sum | Superseded By Advisory |
Oracle Linux 7 (aarch64) | curl-7.29.0-57.0.1.el7.src.rpm | e7628e5bd6fb03960256efe90b9ce035 | ELBA-2021-9230 |
curl-7.29.0-57.0.1.el7.aarch64.rpm | 933d00922fb1cea7a1c3bd232ed7d292 | ELBA-2021-9230 | |
libcurl-7.29.0-57.0.1.el7.aarch64.rpm | 334910a380ede7dcdb2871a10098035b | ELBA-2021-9230 | |
libcurl-devel-7.29.0-57.0.1.el7.aarch64.rpm | 90cd8decf672823104cf313c4a395caa | ELBA-2021-9230 | |
Oracle Linux 7 (x86_64) | curl-7.29.0-57.0.1.el7.src.rpm | e7628e5bd6fb03960256efe90b9ce035 | ELBA-2021-9230 |
curl-7.29.0-57.0.1.el7.x86_64.rpm | 422d8c9e426f436696bcb9221bfb4da7 | ELBA-2021-9230 | |
libcurl-7.29.0-57.0.1.el7.i686.rpm | caad8183ad59050fc2c437e15beb5aae | ELBA-2021-9230 | |
libcurl-7.29.0-57.0.1.el7.x86_64.rpm | 4953b54eb37d9e8c22b36b5cb6f05b34 | ELBA-2021-9230 | |
libcurl-devel-7.29.0-57.0.1.el7.i686.rpm | b51267ec8bf743f33cb8eac8a921aad7 | ELBA-2021-9230 | |
libcurl-devel-7.29.0-57.0.1.el7.x86_64.rpm | f2560a2360d785b30907d529c1b35451 | ELBA-2021-9230 |
This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team