Advisory ID: SUSE-SU-2021:3351-1 Released: Tue Oct 12 13:22:51 2021 Summary: Security update for curl Type: security Severity: moderate
References : 1190373 1190374 CVE-2021-22946 CVE-2021-22947
1190373,1190374,CVE-2021-22946,CVE-2021-22947
This update for curl fixes the following issues:
- CVE-2021-22947: Fixed STARTTLS protocol injection via MITM (bsc#1190374).
- CVE-2021-22946: Fixed protocol downgrade required TLS bypassed (bsc#1190373).
Get the latest Linux and open source security news straight to your inbox.