curl (8.0.1-1~exp1)
[PTS] [DDPO]
OLD: VCS is behind the version in the archive: 7.88.1-10 < 8.0.1-1~exp1.
- Git: https://salsa.debian.org/debian/curl.git
-
- Branch: debian/unstable
- Path: debian/changelog
- Repo size: 96964608
- Browser: https://salsa.debian.org/debian/curl
- Last scan: 2023-06-04 11:03:29+00
- Next scan: 2023-06-12 00:36:00+00
- CI pipeline status: failed
- Debian changelog in Git:
curl (7.88.1-10) unstable; urgency=medium
* Add new patches to fix CVEs (closes: #1036239):
- CVE-2023-28319: UAF in SSH sha256 fingerprint check
- CVE-2023-28320: siglongjmp race condition
- CVE-2023-28321: IDN wildcard match
- CVE-2023-28322: more POST-after-PUT confusion
* d/libcurl*.symbols: Drop curl_jmpenv, not built anymore due to
CVE-2023-28320
-- Samuel Henrique <samueloph@debian.org> Thu, 18 May 2023 23:43:40 +0100
- This branch is even with tag debian/7.88.1-10