Release Info

Advisory: CLSA-2021:1635459168

OS: Ubuntu 16.04 ELS

Public date: 2021-10-28 00:00:00

Project: curl

Version: 7.47.0-1ubuntu2.22

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2021-1635459168.html

Changelog

* SECURITY UPDATE: fix connection reuse checks - debian/patches/CVE-2021-22924.patch: fix connection reuse checks - for issuer cert and case sensitivity in lib/vtls/vtls.c - CVE-2021-22924

Update

Packages list

curl_7.47.0-1ubuntu2.22_amd64.deb libcurl3_7.47.0-1ubuntu2.22_amd64.deb libcurl3-gnutls_7.47.0-1ubuntu2.22_amd64.deb libcurl3-nss_7.47.0-1ubuntu2.22_amd64.deb libcurl4-doc_7.47.0-1ubuntu2.22_all.deb libcurl4-gnutls-dev_7.47.0-1ubuntu2.22_amd64.deb libcurl4-nss-dev_7.47.0-1ubuntu2.22_amd64.deb libcurl4-openssl-dev_7.47.0-1ubuntu2.22_amd64.deb

CVEs

CVE-2021-22924