Format: 1.8 Date: Thu, 15 Mar 2018 08:20:41 -0400 Source: curl Binary: curl libcurl4 libcurl3-gnutls libcurl3-nss libcurl4-openssl-dev libcurl4-gnutls-dev libcurl4-nss-dev libcurl4-doc Architecture: ppc64el Version: 7.58.0-2ubuntu3 Distribution: bionic-proposed Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: curl - command line tool for transferring data with URL syntax libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl4-doc - documentation for libcurl libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.58.0-2ubuntu3) bionic; urgency=medium . * SECURITY UPDATE: FTP path trickery leads to NIL byte OOB write - debian/patches/CVE-2018-1000120.patch: reject path components with control codes in lib/ftp.c, add test to tests/*. - CVE-2018-1000120 * SECURITY UPDATE: LDAP NULL pointer dereference - debian/patches/CVE-2018-1000121.patch: check ldap_get_attribute_ber() results for NULL before using in lib/openldap.c. - CVE-2018-1000121 * SECURITY UPDATE: RTSP RTP buffer over-read - debian/patches/CVE-2018-1000122.patch: make sure excess reads don't go beyond buffer end in lib/transfer.c. - CVE-2018-1000122 Checksums-Sha1: 95600380afd1ca986a4cb9ea030f589077ca15c9 147196 curl-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb 3212d65183175499ae1b6c03536d7353413fe693 11165 curl_7.58.0-2ubuntu3_ppc64el.buildinfo 4d9e4ec2bda68e5454f14008912e8157a4e2d1a6 158200 curl_7.58.0-2ubuntu3_ppc64el.deb 7bf563ff10a53033589d8a3613114e51520c5b61 1373168 libcurl3-gnutls-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb fbd1fde6264a9b042d3da50ae954e8530fcd8bc3 217236 libcurl3-gnutls_7.58.0-2ubuntu3_ppc64el.deb cd48f7d1f75707f69d4a57e74d3a822ccb53814d 1409880 libcurl3-nss-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb 02d7721de39930a33fdfa0d15d44c060017dc22e 224172 libcurl3-nss_7.58.0-2ubuntu3_ppc64el.deb 30954318f246669397c3cffd84d2d830850ff80c 1377216 libcurl4-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb f5b4781ab64103b673d4b2f7bf3193a02c96eb7e 313392 libcurl4-gnutls-dev_7.58.0-2ubuntu3_ppc64el.deb 9f2a4f39ccd5d23918a1ed13a619f4d598d0cafb 321544 libcurl4-nss-dev_7.58.0-2ubuntu3_ppc64el.deb a1735f10f8941365ac1fb042911be89e30b39d71 310752 libcurl4-openssl-dev_7.58.0-2ubuntu3_ppc64el.deb bbb2b058c3d96a6a973823c39c7b4ecb53f63271 216584 libcurl4_7.58.0-2ubuntu3_ppc64el.deb Checksums-Sha256: 96688c7da5fce35617b7b7bf6a294b1a7c92f230885c1d42d0638e90df609b62 147196 curl-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb b00287f59c64eea22f32d7ad3b923553660bb7e2f29dfe24c3769b07e7f6430f 11165 curl_7.58.0-2ubuntu3_ppc64el.buildinfo 141cb845a85d3ce52f1b12e52de1aaec5368f02efa100f0da93a7472ad6eeeb2 158200 curl_7.58.0-2ubuntu3_ppc64el.deb 31e19f473b0b4a449a84e031885febf381427221b789d3b89efccab8e4e28420 1373168 libcurl3-gnutls-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb 5dbeea35c8e7735a36c627f0e7afb85a58073f94e44d313bdfa1aa81171f5333 217236 libcurl3-gnutls_7.58.0-2ubuntu3_ppc64el.deb ca6d535b426b3c09ef3b971ab244a52fb9e41b4b4c788172968ffc6708619f76 1409880 libcurl3-nss-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb 32ce8240853cfd4efc09097a5f8e87ffa62d6edd328d92d23e293810a5691bf4 224172 libcurl3-nss_7.58.0-2ubuntu3_ppc64el.deb da06e6683148c3b92ba2b0f38677090d1649411931baa310c7a210dce292bddb 1377216 libcurl4-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb b5f35e0f03540a9ead60b47b219681304973c9ac498b536c946545a98d070f93 313392 libcurl4-gnutls-dev_7.58.0-2ubuntu3_ppc64el.deb b0b2532eb3d182175353b112b521d8a22d606f47b05755a06b35e8192f61c04b 321544 libcurl4-nss-dev_7.58.0-2ubuntu3_ppc64el.deb 805d461cdda890173a13b333c19a37ac910e02c6e73c569e5693bcbf52ba96f2 310752 libcurl4-openssl-dev_7.58.0-2ubuntu3_ppc64el.deb e55031739d52a83b15073915d6ea645d5ea709b460e6220ab393d9027603acb5 216584 libcurl4_7.58.0-2ubuntu3_ppc64el.deb Files: 0a70565433e13a4e46ca1f8cc3513277 147196 debug optional curl-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb 6ea7109f467c1235df2caf5ee5d85e3d 11165 web optional curl_7.58.0-2ubuntu3_ppc64el.buildinfo b0f2107a31c40279de2271f18e14803a 158200 web optional curl_7.58.0-2ubuntu3_ppc64el.deb 664e4d2b3e92a13ef9f400b9898192a2 1373168 debug optional libcurl3-gnutls-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb e7ddd4043ea8bc3c72085e328a6ced7b 217236 libs optional libcurl3-gnutls_7.58.0-2ubuntu3_ppc64el.deb 1abf5568e0afcc423b86dd19ec40100e 1409880 debug optional libcurl3-nss-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb 696a0fdd7484d60c9b2c5c7cedf45ce7 224172 libs optional libcurl3-nss_7.58.0-2ubuntu3_ppc64el.deb 0c3b1e6be15126675d7e9576bf3d3d69 1377216 debug optional libcurl4-dbgsym_7.58.0-2ubuntu3_ppc64el.ddeb f366cca1ad5ee376a1f55c4d16630918 313392 libdevel optional libcurl4-gnutls-dev_7.58.0-2ubuntu3_ppc64el.deb 48d78cd2570792afaf8b52799ce6b093 321544 libdevel optional libcurl4-nss-dev_7.58.0-2ubuntu3_ppc64el.deb 8ef1e0145558984bebb58e4a1efa37b7 310752 libdevel optional libcurl4-openssl-dev_7.58.0-2ubuntu3_ppc64el.deb a972718eee0ead38568a4374bc3b95c9 216584 libs optional libcurl4_7.58.0-2ubuntu3_ppc64el.deb Original-Maintainer: Alessandro Ghedini