Release Info

Advisory: CLSA-2022:1663183179

OS: CentOS 8.4 ELS

Public date: 2022-09-14 00:00:00

Project: curl

Version: 7.61.1-22.el8.tuxcare.els4

Errata link: https://errata.cloudlinux.com/centos8.4-els/CLSA-2022-1663183179.html

Changelog

- CVE-2022-32208: krb5: fix returning error on decode errors - CVE-2022-32206: content_encoding: return error on too many compression steps - fix a curl.spec's comment about applying TuxCare ELS patches - improve the test system by repeating failed tests several times

Update

Update command: dnf update curl*

Packages list

curl-minimal-7.61.1-22.el8.tuxcare.els4.x86_64.rpm libcurl-7.61.1-22.el8.tuxcare.els4.i686.rpm curl-7.61.1-22.el8.tuxcare.els4.x86_64.rpm libcurl-minimal-7.61.1-22.el8.tuxcare.els4.x86_64.rpm libcurl-minimal-7.61.1-22.el8.tuxcare.els4.i686.rpm libcurl-7.61.1-22.el8.tuxcare.els4.x86_64.rpm libcurl-devel-7.61.1-22.el8.tuxcare.els4.i686.rpm libcurl-devel-7.61.1-22.el8.tuxcare.els4.x86_64.rpm

CVEs

CVE-2022-32208
CVE-2022-32206