ELSA-2022-6157

ELSA-2022-6157 - curl security update

Type:SECURITY
Severity:MODERATE
Release Date:2022-08-25

Description


[7.76.1-14.el9_0.5]
- fix unpreserved file permissions (CVE-2022-32207)
- fix HTTP compression denial of service (CVE-2022-32206)
- fix FTP-KRB bad message verification (CVE-2022-32208)


Related CVEs


CVE-2022-32206
CVE-2022-32208
CVE-2022-32207

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 9 (aarch64) curl-7.76.1-14.el9_0.5.src.rpmb6811d83899d89d862c7e3cb5fa6cf68-
curl-7.76.1-14.el9_0.5.aarch64.rpmc69b0d9e246204098f25f8278d2e62d7-
curl-minimal-7.76.1-14.el9_0.5.aarch64.rpmbacaca743c2e4551b274915c8424dac5-
libcurl-7.76.1-14.el9_0.5.aarch64.rpm05e485b84cb5999692583e9f9c78a623-
libcurl-devel-7.76.1-14.el9_0.5.aarch64.rpm5467f7cf86818a02f4e91b751875343b-
libcurl-minimal-7.76.1-14.el9_0.5.aarch64.rpm09bf5700194271ca1ddda094632e70e2-
Oracle Linux 9 (x86_64) curl-7.76.1-14.el9_0.5.src.rpmb6811d83899d89d862c7e3cb5fa6cf68-
curl-7.76.1-14.el9_0.5.x86_64.rpmb53721714ff578855c4f605c7af0b15d-
curl-minimal-7.76.1-14.el9_0.5.x86_64.rpm758525da7b472b46dc398233e0e97c33-
libcurl-7.76.1-14.el9_0.5.i686.rpmc742861698a6681b21207efbdbc0b7d3-
libcurl-7.76.1-14.el9_0.5.x86_64.rpmd12ed06cd0a45397b350ece8ceceaefa-
libcurl-devel-7.76.1-14.el9_0.5.i686.rpmb542596187b82537f99f0993641aed71-
libcurl-devel-7.76.1-14.el9_0.5.x86_64.rpm5013386156f7d8f17428f1aa080e2f4e-
libcurl-minimal-7.76.1-14.el9_0.5.i686.rpmef0b31d4de4417507bb37b3b74e8029f-
libcurl-minimal-7.76.1-14.el9_0.5.x86_64.rpma03ef7dde72186156dd77122efab01f8-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete