Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Slackware 14.0: 2022-179-01 Critical: Curl DoS Security Update

slackware
Calendar Grey June 28, 2022
Dist Slackware Esm H88
Latest curl updates address vulnerabilities in Slackware. Update your system today for improved security.
New curl packages are available for Slackware 14.0, 14.1, 14.2, 15.0, and -current to fix security issues

Summary

Here are the details from the Slackware 15.0 ChangeLog: patches/packages/curl-7.84.0-i586-1_slack15.0.txz: Upgraded. This update fixes security issues: Set-Cookie denial of service. HTTP compression denial of service. Unpreserved file permissions. FTP-KRB bad message verification. For more information, see: https://curl.se/docs/CVE-2022-32205.html https://curl.se/docs/CVE-2022-32206.html https://curl.se/docs/CVE-2022-32207.html https://curl.se/docs/CVE-2022-32208.html https://www.cve.org/CVERecord?id=CVE-2022-32205 https://www.cve.org/CVERecord?id=CVE-2022-32206 https://www.cve.org/CVERecord?id=CVE-2022-32207 https://www.cve.org/CVERecord?id=CVE-2022-32208 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 14.0:
Updated package for Slackware x86_64 14.0:
Updated package for Slackware 14.1:
Updated package for Slackware x86_64 14.1:
Updated package for Slackware 14.2:
Updated package for Slackware x86_64 14.2:
Updated package for Slackware 15.0:
Updated package for Slackware x86_64 15.0:
Updated package for Slackware -current:
Updated package for Slackware x86_64 -current:

MD5 Signatures

Slackware 14.0 package: d9e3d998503cffdbaeebc9249308154f curl-7.84.0-i486-1_slack14.0.txz
Slackware x86_64 14.0 package: ca0bfae4c9e829109a44e044fdd3197d curl-7.84.0-x86_64-1_slack14.0.txz
Slackware 14.1 package: 415e395549d4f312ebe3f6d1ab2d5428 curl-7.84.0-i486-1_slack14.1.txz
Slackware x86_64 14.1 package: f23c3a3e8d29496798521c4528aad486 curl-7.84.0-x86_64-1_slack14.1.txz
Slackware 14.2 package: a575fe5b53d984466dd0996337cdbc18 curl-7.84.0-i586-1_slack14.2.txz
Slackware x86_64 14.2 package: e878319393314356708eb2f13f036f7f curl-7.84.0-x86_64-1_slack14.2.txz
Slackware 15.0 package: 265458c2d664d37483848151ce3108c4 curl-7.84.0-i586-1_slack15.0.txz
Slackware x86_64 15.0 package: 5abab354c3d6cb386c0fd3a46e4941af curl-7.84.0-x86_64-1_slack15.0.txz
Slackware -current package: f59680befc78cc6d8635324439443ade n/curl-7.84.0-i586-1.txz
Slackware x86_64 -current package: 174076dc227f904203d7f725d38bea7a n/curl-7.84.0-x86_64-1.txz

Severity
critical
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg curl-7.84.0-i586-1_slack15.0.txz

Related News

Your message here