Fedora Packages

curl-7.85.0-7.fc37 in Fedora 37

↵ Return to the main page of curl
View build
Search for updates

Package Info (Data from x86_64 build)
🠗 Changelog
🠗 Dependencies
🠗 Provides
🠗 Files

Changelog

Date Author Change
2023-02-27 Kamil Dudka <kdudka at redhat dot com> - 7.85.0-7 - header: define public API functions as extern C (#2173299)
2023-02-15 Kamil Dudka <kdudka at redhat dot com> - 7.85.0-6 - fix HTTP multi-header compression denial of service (CVE-2023-23916) - share HSTS between handles (CVE-2023-23915 CVE-2023-23914)
2022-12-21 Kamil Dudka <kdudka at redhat dot com> - 7.85.0-5 - smb/telnet: fix use-after-free when HTTP proxy denies tunnel (CVE-2022-43552) - http: use the IDN decoded name in HSTS checks (CVE-2022-43551)
2022-11-24 Kamil Dudka <kdudka at redhat dot com> - 7.85.0-4 - enforce versioned libnghttp2 dependency for libcurl (#2144277)
2022-11-21 Kamil Dudka <kdudka at redhat dot com> - 7.85.0-3 - http2: make nghttp2 less picky about field whitespace (#2144277)
2022-10-26 Kamil Dudka <kdudka at redhat dot com> - 7.85.0-2 - url: use IDN decoded names for HSTS checks (CVE-2022-42916) - http_proxy: restore the protocol pointer on error (CVE-2022-42915) - netrc: replace fgets with Curl_get_line (CVE-2022-35260) - fix POST following PUT confusion (CVE-2022-32221)
2022-09-01 Kamil Dudka <kdudka at redhat dot com> - 7.85.0-1 - new upstream release, which fixes the following vulnerability CVE-2022-35252 - control code in cookie denial of service
2022-08-25 Kamil Dudka <kdudka at redhat dot com> - 7.84.0-3 - tests: fix http2 tests to use CRLF headers to make it work with nghttp2-1.49.0
2022-07-20 Fedora Release Engineering <releng at fedoraproject dot org> - 7.84.0-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_37_Mass_Rebuild
2022-06-27 Kamil Dudka <kdudka at redhat dot com> - 7.84.0-1 - new upstream release, which fixes the following vulnerabilities CVE-2022-32207 - Unpreserved file permissions CVE-2022-32205 - Set-Cookie denial of service CVE-2022-32206 - HTTP compression denial of service CVE-2022-32208 - FTP-KRB bad message verification

Dependencies

Provides

  • curl
  • curl(x86-64)
  • curl-full
  • webclient

Files


Sources on Pagure