ELSA-2023-4523

ELSA-2023-4523 - curl security update

Type:SECURITY
Severity:MODERATE
Release Date:2023-08-10

Description


[7.61.1-30.el8_8.3]
- GSS delegation too eager connection re-use (CVE-2023-27536)
- fix host name wildcard checking (CVE-2023-28321)
- rebuild certs with 2048-bit RSA keys


Related CVEs


CVE-2023-27536
CVE-2023-28321

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) curl-7.61.1-30.el8_8.3.src.rpm5ca2d5448ae859dc07ba1d7f0e3327dd-
curl-7.61.1-30.el8_8.3.aarch64.rpmab8a24502e0e6a44a477fdcf946fefc8-
libcurl-7.61.1-30.el8_8.3.aarch64.rpme75b3930d8a1a4bd62a8c451d48fb34f-
libcurl-devel-7.61.1-30.el8_8.3.aarch64.rpm946cbe766a2c63fa17d8377b68fd5294-
libcurl-minimal-7.61.1-30.el8_8.3.aarch64.rpm473ca7f82ca23afdff7e3121af1e5c99-
Oracle Linux 8 (x86_64) curl-7.61.1-30.el8_8.3.src.rpm5ca2d5448ae859dc07ba1d7f0e3327dd-
curl-7.61.1-30.el8_8.3.x86_64.rpmcb6880ca84fdf647b453c6696b01f7dd-
libcurl-7.61.1-30.el8_8.3.i686.rpma60d9004ad74441e4cee2095f0ef8a42-
libcurl-7.61.1-30.el8_8.3.x86_64.rpm2b5b2f3ea0050b1c10c70f87b0e074a0-
libcurl-devel-7.61.1-30.el8_8.3.i686.rpmb8a33133952da9fc0b842f68bb6ebfcf-
libcurl-devel-7.61.1-30.el8_8.3.x86_64.rpmfe3a0ad2561062b9668964c6810b29ad-
libcurl-minimal-7.61.1-30.el8_8.3.i686.rpmd7bdfe566e8d78c31bb2bedecf941485-
libcurl-minimal-7.61.1-30.el8_8.3.x86_64.rpma63117be6095b444447db8458d6b967b-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete