Format: 1.8 Date: Mon, 17 Jul 2023 10:44:42 -0400 Source: curl Binary: curl libcurl3-gnutls libcurl3-nss libcurl4 libcurl4-gnutls-dev libcurl4-nss-dev libcurl4-openssl-dev Architecture: s390x Version: 7.68.0-1ubuntu2.19 Distribution: focal Urgency: medium Maintainer: Launchpad Build Daemon Changed-By: Marc Deslauriers Description: curl - command line tool for transferring data with URL syntax libcurl3-gnutls - easy-to-use client-side URL transfer library (GnuTLS flavour) libcurl3-nss - easy-to-use client-side URL transfer library (NSS flavour) libcurl4 - easy-to-use client-side URL transfer library (OpenSSL flavour) libcurl4-gnutls-dev - development files and documentation for libcurl (GnuTLS flavour) libcurl4-nss-dev - development files and documentation for libcurl (NSS flavour) libcurl4-openssl-dev - development files and documentation for libcurl (OpenSSL flavour) Changes: curl (7.68.0-1ubuntu2.19) focal-security; urgency=medium . * SECURITY UPDATE: improper certificate validation vulnerability - debian/patches/CVE-2023-28321.patch: fix host name wildcard checking in lib/hostcheck.c, tests/data/test1397, tests/unit/unit1397.c. - CVE-2023-28321 * SECURITY UPDATE: information disclosure vulnerability - debian/patches/CVE-2023-28322.patch: unify the upload/method handling in lib/curl_rtmp.c, lib/file.c, lib/ftp.c, lib/http.c, lib/imap.c, lib/rtsp.c, lib/setopt.c, lib/smb.c, lib/smtp.c, lib/tftp.c, lib/transfer.c, lib/urldata.h, lib/vssh/libssh.c, lib/vssh/libssh2.c. - CVE-2023-28322 Checksums-Sha1: c0073e0d17618f3493b54b49283d42eea4c66a21 139460 curl-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 08f92818670f8847536b15e243441b2aff30142a 11869 curl_7.68.0-1ubuntu2.19_s390x.buildinfo 184705e32aa079a96ca14861b288eab458f67218 156960 curl_7.68.0-1ubuntu2.19_s390x.deb a289c38d167a5a2ebab59e276126a60e2d729d9f 760160 libcurl3-gnutls-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 82e03ecc00a1af8861e4784417214d6941bd877f 213652 libcurl3-gnutls_7.68.0-1ubuntu2.19_s390x.deb 0c49494c225ee2a3f33fe3233245147ea25afbed 797764 libcurl3-nss-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb de7f91eb29adcd216201853333457e795fa80ff7 220068 libcurl3-nss_7.68.0-1ubuntu2.19_s390x.deb 75a1242d45e3b7e16f60e641eb590aa10e360bb1 776512 libcurl4-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 6ba1c1c182efa8adfa68f4e79d0b1a0f11ee121e 303252 libcurl4-gnutls-dev_7.68.0-1ubuntu2.19_s390x.deb 03b0110d347a9cd8544942e1a22fb7ff2f042abb 310252 libcurl4-nss-dev_7.68.0-1ubuntu2.19_s390x.deb f39acd9b9b4036f21d83294e235ebe3b1adf8b0b 304988 libcurl4-openssl-dev_7.68.0-1ubuntu2.19_s390x.deb bd35edd8a44bd5a03a467c75b9e2f815853bd9f1 215736 libcurl4_7.68.0-1ubuntu2.19_s390x.deb Checksums-Sha256: fc3daa91103c83a258529e0f394718c46fc36aedd51133b53d31ae92f364cc12 139460 curl-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 11a40bafb47cd0e4ef25c7729f69bead1117b3be9091008c776bf58631aea9a2 11869 curl_7.68.0-1ubuntu2.19_s390x.buildinfo b215e07fe3e6f980144d091a6b1dd414f63fb178975eca1caeebc4bb665ee43b 156960 curl_7.68.0-1ubuntu2.19_s390x.deb 199d590d6fde40176676eb8d77926aab512cb53ca89863fe999cd5b635e1659d 760160 libcurl3-gnutls-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 06801d09753024d61dbbf4b4665f742f39a9389a8e9b023097f24c946778d5da 213652 libcurl3-gnutls_7.68.0-1ubuntu2.19_s390x.deb 4587d7b847618dfed1df0575545a1323f06bb0f59172069811699597d4ccc163 797764 libcurl3-nss-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 081e2d64c64cbdfdc347c91f9a2d6379acb192327ca61e30465eb97cde169f94 220068 libcurl3-nss_7.68.0-1ubuntu2.19_s390x.deb 3ed671b80585a6cfbcb2084e3b1610c86d24debad3ffb0267c94ba17dc030170 776512 libcurl4-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 0407978d1170af38a7b819ede81502190975d96a979da298378bfcf40fef02af 303252 libcurl4-gnutls-dev_7.68.0-1ubuntu2.19_s390x.deb 156005f821e2f37e78ce10fd8a28a8fc191bcf5f94d31654c3416bede66664ff 310252 libcurl4-nss-dev_7.68.0-1ubuntu2.19_s390x.deb d8be93d008b4d8e1ef28a858c18e7cd8947a9b505d3bba5a37eb55b4cb296718 304988 libcurl4-openssl-dev_7.68.0-1ubuntu2.19_s390x.deb 7848cd7064529d3abd8f3a4171fb537fb651b4b472b7ca7bb1e3b458272b376e 215736 libcurl4_7.68.0-1ubuntu2.19_s390x.deb Files: 9ec14a564805366f36b60ce20923fdc3 139460 debug optional curl-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 7bb7d634adcb7f4b9ecafdea163bd9c2 11869 web optional curl_7.68.0-1ubuntu2.19_s390x.buildinfo 85f1f2b7b01e4582f1138af44315cf1b 156960 web optional curl_7.68.0-1ubuntu2.19_s390x.deb 172e8c9c74b8ece8bb6a8af92c082a3a 760160 debug optional libcurl3-gnutls-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 807af12d3f92d268be7c37403ca2bbb7 213652 libs optional libcurl3-gnutls_7.68.0-1ubuntu2.19_s390x.deb 0f66390535339076d5a0a03237977409 797764 debug optional libcurl3-nss-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 6b660e41e1012278ac1a9f5d5a85c603 220068 libs optional libcurl3-nss_7.68.0-1ubuntu2.19_s390x.deb e6553be4b54138b58b2ee07de98edf4b 776512 debug optional libcurl4-dbgsym_7.68.0-1ubuntu2.19_s390x.ddeb 1cadb1df60d573ce09221bc8df123716 303252 libdevel optional libcurl4-gnutls-dev_7.68.0-1ubuntu2.19_s390x.deb e0c62e9567f530e3b3d18891e08ff94d 310252 libdevel optional libcurl4-nss-dev_7.68.0-1ubuntu2.19_s390x.deb da1f81d84caf84ff24afdd7fcb5c1b6c 304988 libdevel optional libcurl4-openssl-dev_7.68.0-1ubuntu2.19_s390x.deb 831ce98d6daf72a16c3adcf1816fa2d9 215736 libs optional libcurl4_7.68.0-1ubuntu2.19_s390x.deb Original-Maintainer: Alessandro Ghedini