curl (7.19.7-1ubuntu1.9) lucid-security; urgency=medium
* SECURITY UPDATE: incorrect cookie handling via partial literal IP
addresses
- debian/patches/CVE-2014-3613.patch: only use full host matches for
hosts used as IP address in lib/cookie.c, added tests to
tests/data/test1105, tests/data/test31, tests/data/test8.
- CVE-2014-3613
* debian/patches/disable_test519.path: disable test 519 as previous
security update causes it to hang.
* debian/patches/versioned: added Curl_* so test suite works during
build.
Date: 2014-09-12 14:41:19.056589+00:00
Changed-By: Marc Deslauriers <marc.deslauri...@canonical.com>
https://launchpad.net/ubuntu/lucid/+source/curl/7.19.7-1ubuntu1.9
Sorry, changesfile not available.
--
Lucid-changes mailing list
Lucid-changes@lists.ubuntu.com
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/lucid-changes