shield
Security update for curl
SUSE-SLE-Micro-6.0-30
This update for curl fixes the following issues: Security issues fixed: - CVE-2024-7264: ASN.1 date parser overread (bsc#1228535) - CVE-2024-6197: Freeing stack buffer in utf8asn1str (bsc#1227888) - CVE-2024-2379: QUIC certificate check bypass with wolfSSL (bsc#1221666) - CVE-2024-2466: TLS certificate check bypass with mbedTLS (bsc#1221668) - CVE-2024-2004: Usage of disabled protocol (bsc#1221665) - CVE-2024-2398: HTTP/2 push headers memory-leak (bsc#1221667) Non-security issue fixed: - Fixed various TLS related issues including FTP over SSL transmission timeouts.
-
Release DateFeb 3 2025
-
ReferencesBugzilla: 1221665, 1221666, 1221667, 1221668, 1227888, 1228535
CVEs: CVE-2024-2004, CVE-2024-2379, CVE-2024-2398, CVE-2024-2466, CVE-2024-6197, CVE-2024-7264 -
Typesecurity
-
Severitymoderate
cloud_download Downloads
SUSE Linux Micro 6.0 s390x
-
Packages
SUSE Linux Micro 6.0 aarch64
-
Packages
SUSE Linux Micro 6.0 x86_64
-
Packages