[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248678

 
 

909

 
 

195426

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2016-766 ---- curl, libcurl

ID: oval:org.secpod.oval:def:1600469Date: (C)2016-11-11   (M)2023-12-20
Class: PATCHFamily: unix




This build resolves the following issues:CVE-2016-8615 : Cookie injection for other serversCVE-2016-8616 : Case insensitive password comparisonCVE-2016-8617 : Out-of-bounds write via unchecked multiplicationCVE-2016-8618 : Double-free in curl_maprintfCVE-2016-8619 : Double-free in krb5 codeCVE-2016-8620 : Glob parser write/read out of boundsCVE-2016-8621 : curl_getdate out-of-bounds readCVE-2016-8622 : URL unescape heap overflow via integer truncationCVE-2016-8623 : Use-after-free via shared cookiesCVE-2016-8624 : Invalid URL parsing with "#"

Platform:
Amazon Linux AMI
Product:
curl
libcurl
Reference:
ALAS-2016-766
CVE-2016-8617
CVE-2016-8616
CVE-2016-8615
CVE-2016-8622
CVE-2016-8623
CVE-2016-8620
CVE-2016-8621
CVE-2016-8619
CVE-2016-8618
CVE-2016-8624
CVE    10
CVE-2016-8623
CVE-2016-8624
CVE-2016-8621
CVE-2016-8622
...
CPE    133
cpe:/a:haxx:curl:7.21.0
cpe:/a:haxx:curl:7.40.0
cpe:/a:haxx:curl:7.21.3
cpe:/a:haxx:curl:7.21.4
...

© SecPod Technologies