[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249622

 
 

909

 
 

195521

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2016:2714-1 -- SLES curl, libcurl4

ID: oval:org.secpod.oval:def:89045139Date: (C)2021-08-03   (M)2022-09-23
Class: PATCHFamily: unix




This update for curl fixes the following security issues: - CVE-2016-8624: invalid URL parsing with "#" - CVE-2016-8623: Use-after-free via shared cookies - CVE-2016-8621: curl_getdate read out of bounds - CVE-2016-8619: double-free in krb5 code - CVE-2016-8618: double-free in curl_maprintf - CVE-2016-8617: OOB write via unchecked multiplication - CVE-2016-8616: case insensitive password comparison - CVE-2016-8615: cookie injection for other servers - CVE-2016-7167: escape and unescape integer overflows

Platform:
SUSE Linux Enterprise Server 11 SP4
Product:
curl
libcurl4
Reference:
SUSE-SU-2016:2714-1
CVE-2016-7167
CVE-2016-8615
CVE-2016-8616
CVE-2016-8617
CVE-2016-8618
CVE-2016-8619
CVE-2016-8620
CVE-2016-8621
CVE-2016-8622
CVE-2016-8623
CVE-2016-8624
CVE    11
CVE-2016-8623
CVE-2016-8624
CVE-2016-8621
CVE-2016-8622
...
CPE    3
cpe:/a:libcurl4:libcurl4
cpe:/a:haxx:curl
cpe:/o:suse:suse_linux_enterprise_server:11:sp4

© SecPod Technologies