Format: 1.8 Date: Tue, 28 Nov 2017 08:03:58 -0500 Source: curl Binary: curl libcurl3 libcurl3-gnutls libcurl3-nss libcurl4-openssl-dev libcurl4-gnutls-dev libcurl4-nss-dev libcurl3-dbg libcurl4-doc Architecture: arm64 Version: 7.47.0-1ubuntu2.5 Distribution: xenial Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: curl - command line tool for transferring data with URL syntax libcurl3 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl3-dbg - debugging symbols for libcurl (OpenSSL, GnuTLS and NSS flavours) libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4-doc - documentation for libcurl libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.47.0-1ubuntu2.5) xenial-security; urgency=medium . * SECURITY UPDATE: NTLM buffer overflow via integer overflow - debian/patches/CVE-2017-8816.patch: avoid integer overflow for malloc size in lib/curl_ntlm_core.c - CVE-2017-8816 * SECURITY UPDATE: FTP wildcard out of bounds read - debian/patches/CVE-2017-8817.patch: fix heap buffer overflow in setcharset in lib/curl_fnmatch.c, added tests to tests/data/Makefile.inc, tests/data/test1163. - CVE-2017-8817 Checksums-Sha1: d85e1886b574b702ea179bda8ead0a184fb295e5 1086 curl-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 4d0f857160df198ccc2a5cc8bbc21f4bb3ef482f 132756 curl_7.47.0-1ubuntu2.5_arm64.deb 55b851f1218ef1ec803d0ed09cc043c9800e420a 3565582 libcurl3-dbg_7.47.0-1ubuntu2.5_arm64.deb 6f025e220a65535d6fcfb33c0f57c05bb3b9c276 1206 libcurl3-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 6b5c63a4dad3183a32b39aadc94300d11ecda7a2 1210 libcurl3-gnutls-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb e8046ba411ef42e6c8a6f20f75b385ef44ec33cb 152840 libcurl3-gnutls_7.47.0-1ubuntu2.5_arm64.deb 28eda25a1ae8f7499ab934e2d3f4f33fd1aebc23 1206 libcurl3-nss-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 1ecd46e1733b0e49afa0c3e30666e43b260aca3c 158564 libcurl3-nss_7.47.0-1ubuntu2.5_arm64.deb c9dee60446c34e52dba648e8335665c71e771e75 154666 libcurl3_7.47.0-1ubuntu2.5_arm64.deb 2c3a9ce829a319f8a715f98bc9e4d6b7ee19c4cc 1292 libcurl4-gnutls-dev-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb bc3a945dc318ed6db5708af75fb6926c857e95a1 234450 libcurl4-gnutls-dev_7.47.0-1ubuntu2.5_arm64.deb 5d5c58f65a2829b947f54512e1fbf8dc21f4b5c7 1290 libcurl4-nss-dev-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb c9b36b5f2261e45875bd6c90f30b2bb22a5809a9 240626 libcurl4-nss-dev_7.47.0-1ubuntu2.5_arm64.deb c9e9db496a36d0a9aedf3644d2354f72328005f7 1292 libcurl4-openssl-dev-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb a534581828db36a4c87b2f288e02cf4d6d2c9f8b 236024 libcurl4-openssl-dev_7.47.0-1ubuntu2.5_arm64.deb Checksums-Sha256: 0a73ba59998234f95b753d4a1d3811f7d187ea83b2780ce8d66f3deb8f6f7c2f 1086 curl-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 8f1dec6d8f39963bf4851d6cafc00c95d4184fe3ca78b15f8b4f9689906a37c9 132756 curl_7.47.0-1ubuntu2.5_arm64.deb 5562549bac2b5f43dc3949a210d52ca650d7d5ad4365f0087a14c7132032a95e 3565582 libcurl3-dbg_7.47.0-1ubuntu2.5_arm64.deb 75143a64171309c51591bdc5a0bb879a095de4751f3b4a49089c7924be3b9424 1206 libcurl3-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 4b5f092d85ed56a936bea80cd6882a76ac42ddb850e22dded12811430ed2e5b6 1210 libcurl3-gnutls-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb c014326ac41cd0a318b90e9980e33e833ea0eba505d2be9887fbe3f39be38206 152840 libcurl3-gnutls_7.47.0-1ubuntu2.5_arm64.deb ca82de14e87c03fbdf9565af84f71e1d9bb214b88e5fff1a5464a0c4d3357810 1206 libcurl3-nss-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 1881ce02ac5e36c0db5c6686274a9a031a6fb0cc2cdc6be2e5ca8f18c35584a7 158564 libcurl3-nss_7.47.0-1ubuntu2.5_arm64.deb dccc10d1ad4fef0043269d9a740b3b2fa892cf04faa6da5b9ed2b0f8d8c34361 154666 libcurl3_7.47.0-1ubuntu2.5_arm64.deb 1afe5c28731832cc75b8eef507751907c298e00fbf3825e924e893f9b53c50f0 1292 libcurl4-gnutls-dev-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 19278d6620891b37e08161889caac6f7d0e2938de93f9597e51bf3c76c838a1f 234450 libcurl4-gnutls-dev_7.47.0-1ubuntu2.5_arm64.deb 24047d1d587ede510ac6f35b080a9e280dc42add26a296430b4365bd1914d472 1290 libcurl4-nss-dev-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 30bd0793404cad7cc84dde9af4b8e6f06143616b6da60210dba8e454df0e8fc7 240626 libcurl4-nss-dev_7.47.0-1ubuntu2.5_arm64.deb c8f7a2f791c6f97fd731a0a5d643b76749c90b70eda52ca32a71714742fd6951 1292 libcurl4-openssl-dev-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 03f1ba80c6a00a24ce693b223420ea4e8eb1d6786e229f00def108048d871dae 236024 libcurl4-openssl-dev_7.47.0-1ubuntu2.5_arm64.deb Files: 7fffb9fc33dbfe7ea97415c3e9487fb1 1086 web extra curl-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 3d4d1618c8b9f460659cc2986c57d40a 132756 web optional curl_7.47.0-1ubuntu2.5_arm64.deb 22b23c08882ed415821a193662492524 3565582 debug extra libcurl3-dbg_7.47.0-1ubuntu2.5_arm64.deb e21175a63f1be8437945fa5f1c01551a 1206 libs extra libcurl3-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb b52b4684cf021f3ae22b34f2a15bebc6 1210 libs extra libcurl3-gnutls-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb bd1b892297fb2ecca934ff5fc686c8dd 152840 libs optional libcurl3-gnutls_7.47.0-1ubuntu2.5_arm64.deb 68f82066c2ad6650cbabd37474795814 1206 libs extra libcurl3-nss-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb f7de3f18557362d637b3ac35eb9d955c 158564 libs optional libcurl3-nss_7.47.0-1ubuntu2.5_arm64.deb de00cf323278771882003bd519af4f44 154666 libs optional libcurl3_7.47.0-1ubuntu2.5_arm64.deb b0d19bc79b1cce8b8a9dc87ff81d6607 1292 libdevel extra libcurl4-gnutls-dev-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 5c69e97f4aafb02a2065e4bef1672f3a 234450 libdevel optional libcurl4-gnutls-dev_7.47.0-1ubuntu2.5_arm64.deb 901b146e6b61c2c670048cae34105979 1290 libdevel extra libcurl4-nss-dev-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb b5695657f8deaa8c135e4a694ac33b5f 240626 libdevel optional libcurl4-nss-dev_7.47.0-1ubuntu2.5_arm64.deb 02ea43bca1fef0286cc714fd63a5e834 1292 libdevel extra libcurl4-openssl-dev-dbgsym_7.47.0-1ubuntu2.5_arm64.ddeb 78b9036c11d6b36e1e9e4de68f877f34 236024 libdevel optional libcurl4-openssl-dev_7.47.0-1ubuntu2.5_arm64.deb Original-Maintainer: Alessandro Ghedini