Lucene search

K
suseSuseSUSE-SU-2022:2327-2
HistorySep 01, 2022 - 12:00 a.m.

Security update for curl (important)

2022-09-0100:00:00
lists.opensuse.org
23

0.003 Low

EPSS

Percentile

69.5%

An update that fixes two vulnerabilities is now available.

Description:

This update for curl fixes the following issues:

  • CVE-2022-32206: HTTP compression denial of service (bsc#1200735)
  • CVE-2022-32208: FTP-KRB bad message verification (bsc#1200737)

Patch Instructions:

To install this SUSE Security Update use the SUSE recommended installation methods
like YaST online_update or โ€œzypper patchโ€.

Alternatively you can run the command listed for your product:

  • openSUSE Leap Micro 5.2:

    zypper in -t patch openSUSE-Leap-Micro-5.2-2022-2327=1

OSVersionArchitecturePackageVersionFilename
openSUSE Leap Micro5.2aarch64<ย - openSUSE Leap Micro 5.2 (aarch64 x86_64):- openSUSE Leap Micro 5.2 (aarch64 x86_64):.aarch64.rpm
openSUSE Leap Micro5.2x86_64<ย - openSUSE Leap Micro 5.2 (aarch64 x86_64):- openSUSE Leap Micro 5.2 (aarch64 x86_64):.x86_64.rpm