Bug 25941 - curl: Zwei Sicherheitslücken (2.4)
curl: Zwei Sicherheitslücken (2.4)
Status: CLOSED FIXED
Product: UCS
Classification: Unclassified
Component: Security updates
UCS 3.0
Other Linux
: P3 normal (vote)
: UCS 2.4-sec9
Assigned To: Janek Walkenhorst
Moritz Muehlenhoff
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2012-01-26 17:55 CET by Moritz Muehlenhoff
Modified: 2012-09-27 12:31 CEST (History)
0 users

See Also:
What kind of report is it?: ---
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?:
School Customer affected?:
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Max CVSS v3 score:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Moritz Muehlenhoff univentionstaff 2012-01-26 17:55:52 CET
\item Fehlerhafte Integration von OpenSSL (CVE-2011-3389) 

\item Unzureichende Bereinigung von URLs (CVE-2012-0036)
Comment 1 Janek Walkenhorst univentionstaff 2012-09-24 17:44:02 CEST
Version aus Debian für sec2.4-9 gebaut.
Changelog angepasst.
Comment 2 Moritz Muehlenhoff univentionstaff 2012-09-25 13:59:14 CEST
Das Paket wurde importiert, ein Funktionstest war erfolgreich. Changelog in Ordnung.