Format: 1.8 Date: Tue, 05 May 2015 14:17:51 -0400 Source: curl Binary: curl curl-udeb libcurl3 libcurl3-udeb libcurl3-gnutls libcurl3-nss libcurl4-openssl-dev libcurl4-gnutls-dev libcurl4-nss-dev libcurl3-dbg libcurl4-doc Architecture: armhf Version: 7.38.0-3ubuntu3 Distribution: wily-proposed Urgency: medium Maintainer: Ubuntu/armhf Build Daemon Changed-By: Marc Deslauriers Description: curl - command line tool for transferring data with URL syntax curl-udeb - Get a file from an HTTP, HTTPS or FTP server (udeb) libcurl3 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl3-dbg - debugging symbols for libcurl (OpenSSL, GnuTLS and NSS flavours) libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl3-udeb - Multi-protocol file transfer library (OpenSSL) (udeb) libcurl4-doc - documentation for libcurl libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.38.0-3ubuntu3) wily; urgency=medium . * SECURITY UPDATE: NTLM connection reuse when unauthenticated - debian/patches/CVE-2015-3143.patch: require credentials to match in lib/url.c. - CVE-2015-3143 * SECURITY UPDATE: host name out of boundary memory access - debian/patches/CVE-2015-3144.patch: check for valid length in lib/url.c. - CVE-2015-3144 * SECURITY UPDATE: cookie parser out of boundary memory access - debian/patches/CVE-2015-3145.patch: properly handle a single double quote in lib/cookie.c. - CVE-2015-3145 * SECURITY UPDATE: negotiate not treated as connection-oriented - debian/patches/CVE-2015-3148.patch: close Negotiate connections when done in lib/http.c. - CVE-2015-3148 * SECURITY UPDATE: sensitive HTTP server headers disclosure to proxies - debian/patches/CVE-2015-3153.patch: make HTTP headers separated in docs/libcurl/opts/CURLOPT_HEADEROPT.3, lib/url.c, tests/data/test1527, tests/data/test287, tests/libtest/lib1527.c. - CVE-2015-3153 Checksums-Sha1: dfe533f379f794d5463abda6383335b2291707d8 125060 curl_7.38.0-3ubuntu3_armhf.deb 819ed5ad4ac152989c200c0f2ccdce7c4e4a07a1 1000 curl-udeb_7.38.0-3ubuntu3_armhf.udeb 2bcc1b9d1a6d947de87e333d5fa3c5e55ead16e4 156458 libcurl3_7.38.0-3ubuntu3_armhf.deb b861198c6a1dc407242c6489ea62995faa074d38 884 libcurl3-udeb_7.38.0-3ubuntu3_armhf.udeb 383c13d11191df9ea4cc81112c2f536ad659ba3a 148976 libcurl3-gnutls_7.38.0-3ubuntu3_armhf.deb ada041776406917dd8168a2f0ea4e12616227742 158712 libcurl3-nss_7.38.0-3ubuntu3_armhf.deb 2642168641a08ef5e4e01f4836e5058205898e77 232938 libcurl4-openssl-dev_7.38.0-3ubuntu3_armhf.deb 1025204f6a17c23c3eb45fcfe2b404a0171c8550 224734 libcurl4-gnutls-dev_7.38.0-3ubuntu3_armhf.deb 77b0d56336e3e5a7b2a43988690525cfbad74a23 236178 libcurl4-nss-dev_7.38.0-3ubuntu3_armhf.deb ad437b48c69e132dee32f1805bd20d9938601425 3244564 libcurl3-dbg_7.38.0-3ubuntu3_armhf.deb 76c53a4af4735bd7d9ec7162f8813781ad6f645d 1140 curl-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 054ac7d88afc2ec3d9fdd740e7bb92e72d04837b 1038 curl-udeb-dbgsym_7.38.0-3ubuntu3_armhf.ddeb ea105267c2ac504aeeae0f34515c7fc05f89504f 1254 libcurl3-dbgsym_7.38.0-3ubuntu3_armhf.ddeb adc75341126f99c762f9d9926382de3cf6bf9ffe 954 libcurl3-udeb-dbgsym_7.38.0-3ubuntu3_armhf.ddeb c64de79f6273865b79d71f6889649f65f527cdcd 1258 libcurl3-gnutls-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 1ebe84ec7693b97668dee8311373fe78ba0503c2 1256 libcurl3-nss-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 06403b17537c8a4ae76732a510217af847afbfb9 1340 libcurl4-openssl-dev-dbgsym_7.38.0-3ubuntu3_armhf.ddeb adaba0485c2268bad26856b6a5c7373592bc0abb 1340 libcurl4-gnutls-dev-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 66474416db16bc7eb764ee228ea2904c358d0e4a 1342 libcurl4-nss-dev-dbgsym_7.38.0-3ubuntu3_armhf.ddeb Checksums-Sha256: 2da9fdfc0279b55c7e7c802c9074f06c0fa67f4ac2c763d04ea9080975db2b49 125060 curl_7.38.0-3ubuntu3_armhf.deb 6ef15727b3a06c3926b81ec0d043f6ee9439ab87dfaa8d1a8d85082f8007a75c 1000 curl-udeb_7.38.0-3ubuntu3_armhf.udeb 693211970c632a905f4dd1a74162c19268e048d2c29f35b1706568066af9df78 156458 libcurl3_7.38.0-3ubuntu3_armhf.deb 4ca399475579092a935aec97508a65ad145fcec512ce080c691daeed64475f0f 884 libcurl3-udeb_7.38.0-3ubuntu3_armhf.udeb f4b0b1691f2a30b7d111e6d462054fd7b20ca18695109be2747488b805b95499 148976 libcurl3-gnutls_7.38.0-3ubuntu3_armhf.deb e43b76335c28148489cacbf50a6c2c8dac9a2ae2547e01977aceb9dd34400809 158712 libcurl3-nss_7.38.0-3ubuntu3_armhf.deb 395aa7cd9146277888dc695b05c208b7c9f0df205ede1c82c0992f8e4aa7f104 232938 libcurl4-openssl-dev_7.38.0-3ubuntu3_armhf.deb cb4f10d44e581a3af6b606abdec5484193d62ac6dca16dd38f22baa6d2fab427 224734 libcurl4-gnutls-dev_7.38.0-3ubuntu3_armhf.deb 80e1aeb97c75546177989934af8fde7133258c528fe5991fa80bbbde3bfd3fbf 236178 libcurl4-nss-dev_7.38.0-3ubuntu3_armhf.deb 3d917b37dacf69c76838f68d641d6044b54854938c0395720e96a5ec392a10f6 3244564 libcurl3-dbg_7.38.0-3ubuntu3_armhf.deb a32fabf16f089143f8943b11a9168a9243b84357b6dc71529742e1a7065c633a 1140 curl-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 648773391f87736365d31036c584f6c9cd49e1c30d6b77afc161455ad114aeb8 1038 curl-udeb-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 88e65a642c1d0b167569ba604113a1d5f64e3bbdc64207d13f6497ae45efbb90 1254 libcurl3-dbgsym_7.38.0-3ubuntu3_armhf.ddeb d3cd65ca3d6c6f8b2b196d5c51706f54ca52b39dfeeb2017b9a337102567690e 954 libcurl3-udeb-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 639f2cb1b858965ddd9ce8a9aa8ec72a9deeeca1fdd32d5d7f55e7ab2be3c9cb 1258 libcurl3-gnutls-dbgsym_7.38.0-3ubuntu3_armhf.ddeb b6aeb301299e01abcba42dae2ea8a514207444bb692e38374df887ec017dac23 1256 libcurl3-nss-dbgsym_7.38.0-3ubuntu3_armhf.ddeb cf832bc8b214dbbd1eebb392b7a6c9e901130b62bb9d2197c62002affcf55d9f 1340 libcurl4-openssl-dev-dbgsym_7.38.0-3ubuntu3_armhf.ddeb c5433e6727622642f1cb10447e1078d69230b795e7aedbd24b6ccad50bb187dd 1340 libcurl4-gnutls-dev-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 8af6d3cb0c3228fe07a2bc531dfd4e1643985c7abc6a0792c444f49a2cd650fb 1342 libcurl4-nss-dev-dbgsym_7.38.0-3ubuntu3_armhf.ddeb Files: 3beba4daa1ee5b089c6e0d585e2daf39 125060 web optional curl_7.38.0-3ubuntu3_armhf.deb d3eb848c3c601c63519e6407e3bb7f55 1000 debian-installer optional curl-udeb_7.38.0-3ubuntu3_armhf.udeb ac818b21932ebd77a74524b4caa49825 156458 libs optional libcurl3_7.38.0-3ubuntu3_armhf.deb 1178772d5ad61ceb1ed4cda65c620e79 884 debian-installer optional libcurl3-udeb_7.38.0-3ubuntu3_armhf.udeb 5d8b0a32b460e9072cd1761870094f02 148976 libs optional libcurl3-gnutls_7.38.0-3ubuntu3_armhf.deb 684364c39cfe5a3aa2742cc21673fecf 158712 libs optional libcurl3-nss_7.38.0-3ubuntu3_armhf.deb b0016972feb26d098daf1b474b092211 232938 libdevel optional libcurl4-openssl-dev_7.38.0-3ubuntu3_armhf.deb 1ecfa64d9e406e44faf2047462dbc8fd 224734 libdevel optional libcurl4-gnutls-dev_7.38.0-3ubuntu3_armhf.deb 71ba9c68b5155bc1d434b371f7f52b0d 236178 libdevel optional libcurl4-nss-dev_7.38.0-3ubuntu3_armhf.deb ae558a54ed357451b4c4da9c5df932bc 3244564 debug extra libcurl3-dbg_7.38.0-3ubuntu3_armhf.deb 2c358d3076a64b425e4a7076b9969803 1140 web extra curl-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 1a5bcf951ded56e14ed55d12cdbb495b 1038 debian-installer extra curl-udeb-dbgsym_7.38.0-3ubuntu3_armhf.ddeb dfd7212c9e3d0ac5264799623f8a0728 1254 libs extra libcurl3-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 57da9dccf489d2b899eb93009925a776 954 debian-installer extra libcurl3-udeb-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 6a56023e2301a8942758e4fb4d36eff1 1258 libs extra libcurl3-gnutls-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 3f61ecbd9a4c43379d64b217c52823fa 1256 libs extra libcurl3-nss-dbgsym_7.38.0-3ubuntu3_armhf.ddeb b29f2993a77d0a4b6450671e394c3c4b 1340 libdevel extra libcurl4-openssl-dev-dbgsym_7.38.0-3ubuntu3_armhf.ddeb 6651d6949abc1ae2255c1bf218976c61 1340 libdevel extra libcurl4-gnutls-dev-dbgsym_7.38.0-3ubuntu3_armhf.ddeb e3a48b6d2a7b227ba9001818f4bb78bb 1342 libdevel extra libcurl4-nss-dev-dbgsym_7.38.0-3ubuntu3_armhf.ddeb Original-Maintainer: Alessandro Ghedini Package-Type: udeb