Lucene search

K
oraclelinuxOracleLinuxELSA-2019-3701
HistoryNov 14, 2019 - 12:00 a.m.

curl security and bug fix update

2019-11-1400:00:00
linux.oracle.com
28

EPSS

0.192

Percentile

96.4%

[7.61.1-11]

  • rebuild with updated annobin to prevent Execshield RPMDiff check from failing
    [7.61.1-10]
  • fix SMTP end-of-response out-of-bounds read (CVE-2019-3823)
  • fix NTLMv2 type-3 header stack buffer overflow (CVE-2019-3822)
  • fix NTLM type-2 out-of-bounds buffer read (CVE-2018-16890)
  • xattr: strip credentials from any URL that is stored (CVE-2018-20483)
    [7.61.1-9]
  • do not let libssh create a new socket for SCP/SFTP (#1669156)