↵ Return to the main page of curl
View build
Search for updates
Package Info (Data from x86_64 build)
🠗 Changelog
🠗 Dependencies
🠗 Provides
🠗 Files
Date | Author | Change |
---|---|---|
2023-02-27 | Kamil Dudka <kdudka at redhat dot com> - 7.85.0-7 | - header: define public API functions as extern C (#2173299) |
2023-02-15 | Kamil Dudka <kdudka at redhat dot com> - 7.85.0-6 | - fix HTTP multi-header compression denial of service (CVE-2023-23916) - share HSTS between handles (CVE-2023-23915 CVE-2023-23914) |
2022-12-21 | Kamil Dudka <kdudka at redhat dot com> - 7.85.0-5 | - smb/telnet: fix use-after-free when HTTP proxy denies tunnel (CVE-2022-43552) - http: use the IDN decoded name in HSTS checks (CVE-2022-43551) |
2022-11-24 | Kamil Dudka <kdudka at redhat dot com> - 7.85.0-4 | - enforce versioned libnghttp2 dependency for libcurl (#2144277) |
2022-11-21 | Kamil Dudka <kdudka at redhat dot com> - 7.85.0-3 | - http2: make nghttp2 less picky about field whitespace (#2144277) |
2022-10-26 | Kamil Dudka <kdudka at redhat dot com> - 7.85.0-2 | - url: use IDN decoded names for HSTS checks (CVE-2022-42916) - http_proxy: restore the protocol pointer on error (CVE-2022-42915) - netrc: replace fgets with Curl_get_line (CVE-2022-35260) - fix POST following PUT confusion (CVE-2022-32221) |
2022-09-01 | Kamil Dudka <kdudka at redhat dot com> - 7.85.0-1 | - new upstream release, which fixes the following vulnerability CVE-2022-35252 - control code in cookie denial of service |
2022-08-25 | Kamil Dudka <kdudka at redhat dot com> - 7.84.0-3 | - tests: fix http2 tests to use CRLF headers to make it work with nghttp2-1.49.0 |
2022-07-20 | Fedora Release Engineering <releng at fedoraproject dot org> - 7.84.0-2 | - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild |
2022-06-27 | Kamil Dudka <kdudka at redhat dot com> - 7.84.0-1 | - new upstream release, which fixes the following vulnerabilities CVE-2022-32207 - Unpreserved file permissions CVE-2022-32205 - Set-Cookie denial of service CVE-2022-32206 - HTTP compression denial of service CVE-2022-32208 - FTP-KRB bad message verification |