[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2020-1020 -- Oracle curl

ID: oval:org.secpod.oval:def:1504240Date: (C)2021-01-10   (M)2023-12-20
Class: PATCHFamily: unix




[7.29.0-57.0.1] - Fix TFTP small blocksize heap buffer overflow [CVE-2019-5482][Orabug: 30568724] - Security Fixes [OraBug: 28939992] - CVE-2016-8615 cookie injection for other servers - CVE-2016-8616 case insensitive password comparison - CVE-2016-8617 OOB write via unchecked multiplication - CVE-2016-8618 double-free in curl_maprintf - CVE-2016-8619 double-free in krb5 code - CVE-2016-8621 curl_getdate read out of bounds - CVE-2016-8622 URL unescape heap overflow via integer truncation - CVE-2016-8623 Use-after-free via shared cookies - CVE-2016-8624 invalid URL parsing with # [7.29.0-57] - allow curl to POST from a char device [7.29.0-56] - fix auth failure with duplicated WWW-Authenticate header [7.29.0-55] - fix TFTP receive buffer overflow

Platform:
Oracle Linux 7
Product:
curl
Reference:
ELSA-2020-1020
CVE-2019-5436
CVE    1
CVE-2019-5436

© SecPod Technologies