Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Debian 11: DSA-5331-1 Critical: OpenSSL Buffer Overflow and Data Leak

debian
Calendar Grey January 27, 2023
Debian Logo
Two security flaws in Curl identified in Debian may result in denial of service or data leakage. Update is advised.
Two vulnerabilities were discovered in Curl, an easy-to-use client-side URL transfer library, which could result in denial of service or information disclosure

Summary

Two vulnerabilities were discovered in Curl, an easy-to-use client-side
URL transfer library, which could result in denial of service or
information disclosure.

For the stable distribution (bullseye), these problems have been fixed in
version 7.74.0-1.3+deb11u5. This update also revises the fix for
CVE-2022-27774 released in DSA-5197-1.

We recommend that you upgrade your curl packages.

For the detailed security status of curl please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/curl

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: curl
CVE ID: CVE-2022-32221 CVE-2022-43552

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here