curl 7.27.0-1ubuntu1.9 source package in Ubuntu

Changelog

curl (7.27.0-1ubuntu1.9) quantal-security; urgency=medium

  * SECURITY UPDATE: wrong re-use of connections
    - debian/patches/CVE-2014-0138.patch: fix possible issues with NTLM
      HTTP logic, and extend new connection logic to other protocols in
      lib/http.c, lib/url.c, lib/urldata.h, add new tests to
      tests/data/Makefile.am, tests/data/test1418, tests/data/test1419.
    - CVE-2014-0138
  * SECURITY UPDATE: incorrect wildcard SSL certificate validation with
    literal IP addresses
    - debian/patches/CVE-2014-0139.patch: fix wildcard logic in
      lib/ssluse.c.
    - CVE-2014-0139
  * debian/patches/fix_test172.path: fix expired cookie causing test to
    fail.
  * debian/patches/disable_test519.path: disable test 519 as security
    update causes it to hang. Fixing this would require backporting new
    logic into tests/server/sws.c.
 -- Marc Deslauriers <email address hidden>   Tue, 01 Apr 2014 09:59:44 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Quantal
Original maintainer:
Ubuntu Developers
Architectures:
any
Section:
web
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
curl_7.27.0.orig.tar.gz 3.0 MiB 8cbad34e58608f0e959fe16c7c987e57f5f3dec2c92d1cebb0678f9d668a6867
curl_7.27.0-1ubuntu1.9.debian.tar.gz 41.1 KiB e83c33e20fca340a423c2c6b60dba4e2f9b2429d867b6e5531101eb3b4984f9c
curl_7.27.0-1ubuntu1.9.dsc 2.6 KiB 5a7471d122c120f5b28208ac4ec4ed62b84bbfa19fa4c26ac7064acbda5a9adf

View changes file

Binary packages built by this source

curl: No summary available for curl in ubuntu quantal.

No description available for curl in ubuntu quantal.

curl-udeb: No summary available for curl-udeb in ubuntu quantal.

No description available for curl-udeb in ubuntu quantal.

libcurl3: No summary available for libcurl3 in ubuntu quantal.

No description available for libcurl3 in ubuntu quantal.

libcurl3-dbg: No summary available for libcurl3-dbg in ubuntu quantal.

No description available for libcurl3-dbg in ubuntu quantal.

libcurl3-gnutls: No summary available for libcurl3-gnutls in ubuntu quantal.

No description available for libcurl3-gnutls in ubuntu quantal.

libcurl3-nss: No summary available for libcurl3-nss in ubuntu quantal.

No description available for libcurl3-nss in ubuntu quantal.

libcurl3-udeb: No summary available for libcurl3-udeb in ubuntu quantal.

No description available for libcurl3-udeb in ubuntu quantal.

libcurl4-gnutls-dev: No summary available for libcurl4-gnutls-dev in ubuntu quantal.

No description available for libcurl4-gnutls-dev in ubuntu quantal.

libcurl4-nss-dev: No summary available for libcurl4-nss-dev in ubuntu quantal.

No description available for libcurl4-nss-dev in ubuntu quantal.

libcurl4-openssl-dev: No summary available for libcurl4-openssl-dev in ubuntu quantal.

No description available for libcurl4-openssl-dev in ubuntu quantal.