gpp_maybe
Security update for curl
SUSE-SLE-SAP-12-SP4-2023-2228
This update for curl fixes the following issues: - CVE-2023-28320: Fixed siglongjmp race condition (bsc#1211231). - CVE-2023-28321: Fixed IDN wildcard matching (bsc#1211232). - CVE-2023-28322: Fixed POST-after-PUT confusion (bsc#1211233). - CVE-2023-27533: Fixed TELNET option IAC injection (bsc#1209209). - CVE-2023-27534: Fixed SFTP path ~ resolving discrepancy (bsc#1209210). - CVE-2023-27535: Fixed FTP too eager connection reuse (bsc#1209211). - CVE-2023-27536: Fixed GSS delegation too eager connection reuse (bsc#1209212). - CVE-2023-27538: Fixed SSH connection too eager reuse still (bsc#1209214). - CVE-2022-43552: HTTP Proxy deny use-after-free (bsc#1206309). - CVE-2023-23916: Fixed HTTP multi-header compression denial of service (bsc#1207992).
-
Release DateMay 17 2023
-
ReferencesBugzilla: 1211339, 1211232, 1209214, 1209211, 1206309, 1211233, 1209212, 1207992, 1211231, 1209209, 1209210
CVEs: CVE-2023-28320, CVE-2023-28321, CVE-2022-43552, CVE-2023-27534, CVE-2023-27535, CVE-2023-28322, CVE-2023-27533, CVE-2023-27538, CVE-2023-23916, CVE-2023-27536 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server for SAP Applications 12.4 ppc64le
-
Packages
SUSE Linux Enterprise Server for SAP Applications 12.4 x86_64
-
Packagescurl
A Tool for Transferring Data from URLslibcurl47.60.0-4.56.1 lock rpm lock src
Version 4 of cURL shared librarylibcurl4-32bit7.60.0-4.56.1 lock rpm
Version 4 of cURL shared library7.60.0-4.56.1 lock rpm