Format: 1.8 Date: Mon, 09 May 2022 13:42:15 -0400 Source: curl Binary: curl libcurl3-gnutls libcurl3-nss libcurl4 libcurl4-gnutls-dev libcurl4-nss-dev libcurl4-openssl-dev Architecture: s390x Version: 7.68.0-1ubuntu2.11 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: curl - command line tool for transferring data with URL syntax libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.68.0-1ubuntu2.11) focal-security; urgency=medium . * SECURITY UPDATE: CERTINFO never-ending busy-loop - debian/patches/CVE-2022-27781.patch: return error if seemingly stuck in a cert loop in lib/vtls/nss.c. - CVE-2022-27781 * SECURITY UPDATE: TLS and SSH connection too eager reuse - debian/patches/CVE-2022-27782.patch: check more TLS details for connection reuse in lib/setopt.c, lib/url.c, lib/urldata.h, lib/vtls/gtls.c, lib/vtls/openssl.c, lib/vtls/nss.c, lib/vtls/vtls.c, lib/vssh/ssh.h. - CVE-2022-27782 Checksums-Sha1: c649f446dc2a35132a363e1cb31b12e31da1342f 139456 curl-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb a415e4ef9c31fd526e0a1cf4668d0481d397a9da 11753 curl_7.68.0-1ubuntu2.11_s390x.buildinfo 35e196f7f07d2d207c2bcc2c0f11802eea6c46eb 156960 curl_7.68.0-1ubuntu2.11_s390x.deb 1fd2654f007961a8e2b9828275edf0d4f0e02ca7 758844 libcurl3-gnutls-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb 4229e0272f1d1c4e7516fea069e4a5d9478f7b57 213268 libcurl3-gnutls_7.68.0-1ubuntu2.11_s390x.deb 2794369ea398229b1e9d44f362bec0c79875fa7a 796512 libcurl3-nss-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb 40ae00340277171295ff1268a6a2a329df62c6eb 219556 libcurl3-nss_7.68.0-1ubuntu2.11_s390x.deb 7d91caf3a51d6d7717588cd900a9401a7fb80fbf 775488 libcurl4-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb ae99f530849629fd848f4c7ae90e1ea26c451401 302520 libcurl4-gnutls-dev_7.68.0-1ubuntu2.11_s390x.deb 82ebbd3c7227be70d7abc8663ae65cfc899f0a9b 309152 libcurl4-nss-dev_7.68.0-1ubuntu2.11_s390x.deb 5e025a3b42b0bdfdce9be00dc78e50855d76d77b 304640 libcurl4-openssl-dev_7.68.0-1ubuntu2.11_s390x.deb 87a3b40db05a2bc52dcf448e96239eff56699468 215708 libcurl4_7.68.0-1ubuntu2.11_s390x.deb Checksums-Sha256: f49fce83d5f1e426b4bc32e29e4c693427811291ac1dfd5de6a8c084b7223a07 139456 curl-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb 55d886968236a0225dc74cbcb30b929540a4921965b0a979e1e232fb7f6e1785 11753 curl_7.68.0-1ubuntu2.11_s390x.buildinfo 6da2fe89ff57cfa9a1d68501a944d1d4801e23728f6791a285b5d268b45ff1b6 156960 curl_7.68.0-1ubuntu2.11_s390x.deb 4f7be77511b18b89ccfcd39c98bec6e9e3fb5579bf387f2dda07ec9c1b57d5b3 758844 libcurl3-gnutls-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb a8f3cd06642fe296f98aca8b2c18e93c00e418c696cde8780ab34bdb9c5bddbc 213268 libcurl3-gnutls_7.68.0-1ubuntu2.11_s390x.deb c04eaef8a8f3e0026be34426add8094b70cc6413af7efb3034820df178cefc11 796512 libcurl3-nss-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb a870e53d08d0dc7c1872486100ab418a9cdf7894d8a50f681d57ba4b740bb4c2 219556 libcurl3-nss_7.68.0-1ubuntu2.11_s390x.deb bed3a1a05ef0457dcf74a9890d41eb8dd6ca27148e22f339dfa445a2f7cddcd3 775488 libcurl4-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb dc742b20f71196304b78481d6a3cd22fe9c3f161e84114347217c1d795989747 302520 libcurl4-gnutls-dev_7.68.0-1ubuntu2.11_s390x.deb 4c44f5ff2895570d8231e5ce3ccc33ada18556a0da6e2504713c30a91f10d014 309152 libcurl4-nss-dev_7.68.0-1ubuntu2.11_s390x.deb 02299dfd1ba696ee4fc8055f91b4185aac5e2d3b5c058dd283d6fae9dc32edda 304640 libcurl4-openssl-dev_7.68.0-1ubuntu2.11_s390x.deb b1a37975e1030ec481a00ff175ed9258edec86f17fd23036baad121a86a54f38 215708 libcurl4_7.68.0-1ubuntu2.11_s390x.deb Files: 8e9b3e8d08e14e52cbf2f558f8001391 139456 debug optional curl-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb 3d746f759d9b4821ff167965bf211194 11753 web optional curl_7.68.0-1ubuntu2.11_s390x.buildinfo 5eb77fc52c44a56a9c7f56410aa86f74 156960 web optional curl_7.68.0-1ubuntu2.11_s390x.deb 4ef0ea46d2cf15b8eb5a9273484e5076 758844 debug optional libcurl3-gnutls-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb 5379b6c4fa4ac33707fa24bd74b3c572 213268 libs optional libcurl3-gnutls_7.68.0-1ubuntu2.11_s390x.deb 45846b8292eebe0e7cb13209a92575c6 796512 debug optional libcurl3-nss-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb 20ef8c42b0a52e3487ed2f3a382af86a 219556 libs optional libcurl3-nss_7.68.0-1ubuntu2.11_s390x.deb 029f8de17e58e4733018b81d7b1598ff 775488 debug optional libcurl4-dbgsym_7.68.0-1ubuntu2.11_s390x.ddeb eeadc9d1d92306ae659004ef5c5abfaa 302520 libdevel optional libcurl4-gnutls-dev_7.68.0-1ubuntu2.11_s390x.deb 02a13b0cb6a9c1bd24ff70ef1819cb10 309152 libdevel optional libcurl4-nss-dev_7.68.0-1ubuntu2.11_s390x.deb c9bf80ce4a4a6c6e2b15c3afac77cde7 304640 libdevel optional libcurl4-openssl-dev_7.68.0-1ubuntu2.11_s390x.deb 7a815137661b76958bed7c480b554b20 215708 libs optional libcurl4_7.68.0-1ubuntu2.11_s390x.deb Original-Maintainer: Alessandro Ghedini