[ubuntu/oracular-proposed] curl 8.9.1-2ubuntu2 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Mon Sep 16 15:02:15 UTC 2024


curl (8.9.1-2ubuntu2) oracular; urgency=medium

  * SECURITY UPDATE: OCSP stapling bypass with GnuTLS
    - debian/patches/CVE-2024-8096.patch: fix OCSP stapling management in
      lib/vtls/gtls.c.
    - CVE-2024-8096

Date: Mon, 16 Sep 2024 10:46:36 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/curl/8.9.1-2ubuntu2
-------------- next part --------------
Format: 1.8
Date: Mon, 16 Sep 2024 10:46:36 -0400
Source: curl
Built-For-Profiles: noudeb
Architecture: source
Version: 8.9.1-2ubuntu2
Distribution: oracular
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Changes:
 curl (8.9.1-2ubuntu2) oracular; urgency=medium
 .
   * SECURITY UPDATE: OCSP stapling bypass with GnuTLS
     - debian/patches/CVE-2024-8096.patch: fix OCSP stapling management in
       lib/vtls/gtls.c.
     - CVE-2024-8096
Checksums-Sha1:
 9e4b2d3db1e765ffcd2bf3c7d68f357682bbb2f1 3035 curl_8.9.1-2ubuntu2.dsc
 0cc7be672fb13ae5b1a5c63fc7bb47f56276dec8 55064 curl_8.9.1-2ubuntu2.debian.tar.xz
 0709a52170bf1f234c53cb5e20ac2b8f25ad67bd 10487 curl_8.9.1-2ubuntu2_source.buildinfo
Checksums-Sha256:
 8d283e328fe1124ba315bf05fc32ed569431fe4c33b411642b7eacf2f001813f 3035 curl_8.9.1-2ubuntu2.dsc
 71dfefe318fe37c5ef9febccf4ca5193da4ecddacd9e0691bfadae98f998b096 55064 curl_8.9.1-2ubuntu2.debian.tar.xz
 bb2185ffe5853af724f85ad0d6ee89bf0a68f6e4d534305280ac5e13ad421633 10487 curl_8.9.1-2ubuntu2_source.buildinfo
Files:
 365e1730130db9a1e468a88182fbcaa8 3035 web optional curl_8.9.1-2ubuntu2.dsc
 7300cbe64ae8fa2e47a83016fee4b2f7 55064 web optional curl_8.9.1-2ubuntu2.debian.tar.xz
 11f846eeee9be1ae628607d190c4e5a5 10487 web optional curl_8.9.1-2ubuntu2_source.buildinfo
Original-Maintainer: Debian Curl Maintainers <team+curl at tracker.debian.org>


More information about the oracular-changes mailing list