Bug 31704 - curl new security issues CVE-2023-2753[3-8]
Summary: curl new security issues CVE-2023-2753[3-8]
Status: RESOLVED DUPLICATE of bug 31703
Alias: None
Product: Mageia
Classification: Unclassified
Component: Security (show other bugs)
Version: Cauldron
Hardware: All Linux
Priority: Normal major
Target Milestone: ---
Assignee: Mageia Bug Squad
QA Contact: Sec team
URL:
Whiteboard: MGA8TOO
Keywords:
Depends on:
Blocks:
 
Reported: 2023-03-20 17:50 CET by David Walser
Modified: 2023-03-20 17:57 CET (History)
0 users

See Also:
Source RPM: curl-7.88.1-1.mga9.src.rpm
CVE:
Status comment: Fixed upstream in 8.0.1


Attachments

Description David Walser 2023-03-20 17:50:31 CET
cURL has issued advisories today (March 20):
https://curl.se/docs/CVE-2023-27533.html
https://curl.se/docs/CVE-2023-27534.html
https://curl.se/docs/CVE-2023-27535.html
https://curl.se/docs/CVE-2023-27536.html
https://curl.se/docs/CVE-2023-27537.html
https://curl.se/docs/CVE-2023-27538.html

The issues are fixed upstream in 8.0.1:
https://curl.se/changes.html

Mageia 8 is affected by everything except CVE-2023-27537.
David Walser 2023-03-20 17:51:09 CET

Whiteboard: (none) => MGA8TOO
Status comment: (none) => Fixed upstream in 8.0.1

Comment 1 David Walser 2023-03-20 17:57:19 CET
Dup

*** This bug has been marked as a duplicate of bug 31703 ***

Status: NEW => RESOLVED
Resolution: (none) => DUPLICATE


Note You need to log in before you can comment on or make changes to this bug.