Alerts This Week
Warning Icon 1 923
Alerts This Week
Warning Icon 1 923

Oracle Linux 9 ELSA-2022-6157 Moderate Curl Denial of Service Fixes

oracle
Calendar Grey August 25, 2022
Oracle Linux Logo Esm H88
Oracle Linux 9 Security Advisory ELSA-2022-6160 discusses vulnerabilities in OpenSSL, focusing on critical memory corruption and security enhancement measures.
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[7.76.1-14.el9_0.5] - fix unpreserved file permissions (CVE-2022-32207) - fix HTTP compression denial of service (CVE-2022-32206) - fix FTP-KRB bad message verification (CVE-2022-32208)

SRPMs

https://oss.oracle.com:443/ol9/SRPMS-updates/curl-7.76.1-14.el9_0.5.src.rpm

x86_64

curl-7.76.1-14.el9_0.5.x86_64.rpm curl-minimal-7.76.1-14.el9_0.5.x86_64.rpm libcurl-7.76.1-14.el9_0.5.i686.rpm libcurl-7.76.1-14.el9_0.5.x86_64.rpm libcurl-devel-7.76.1-14.el9_0.5.i686.rpm libcurl-devel-7.76.1-14.el9_0.5.x86_64.rpm libcurl-minimal-7.76.1-14.el9_0.5.i686.rpm libcurl-minimal-7.76.1-14.el9_0.5.x86_64.rpm

aarch64

curl-7.76.1-14.el9_0.5.aarch64.rpm curl-minimal-7.76.1-14.el9_0.5.aarch64.rpm libcurl-7.76.1-14.el9_0.5.aarch64.rpm libcurl-devel-7.76.1-14.el9_0.5.aarch64.rpm libcurl-minimal-7.76.1-14.el9_0.5.aarch64.rpm

Related CVEs: CVE-2022-32206 CVE-2022-32207 CVE-2022-32208

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here