Accepted curl 7.74.0-1.3+deb11u9 (source) into oldstable-proposed-updates
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Sun, 10 Sep 2023 15:19:20 +0530
Source: curl
Built-For-Profiles: nocheck
Architecture: source
Version: 7.74.0-1.3+deb11u9
Distribution: bullseye
Urgency: medium
Maintainer: Alessandro Ghedini <ghedo@debian.org>
Changed-By: Carlos Henrique Lima Melara <charlesmelara@riseup.net>
Changes:
curl (7.74.0-1.3+deb11u9) bullseye; urgency=medium
.
* Team upload.
* Import 2 new patches to fix CVES:
- CVE-2023-28321: IDN wildcard match may lead to Improper Cerificate
Validation.
- CVE-2023-28322: more POST-after-PUT confusion.
* debian/patches/CVE-2023-28322.patch: backport patch.
Checksums-Sha1:
57c16fd62475649888cb156e2327bfb2af7bf08a 2699 curl_7.74.0-1.3+deb11u9.dsc
f0d4f2e1e1d8afd8e1d5a265d225e6e97dffa989 70488 curl_7.74.0-1.3+deb11u9.debian.tar.xz
d6e1f73331c4ccbd56229f0f5bbb253e29b12d1b 11403 curl_7.74.0-1.3+deb11u9_amd64.buildinfo
Checksums-Sha256:
5adccef6b898b2a0aee402c6cb0aef72f8e287030f05ab5ff9ab3c625f6c5727 2699 curl_7.74.0-1.3+deb11u9.dsc
4df4cf11aaefbec5280257bfe551ae78ddec0706a7ca41bb65614c28ef0c86d2 70488 curl_7.74.0-1.3+deb11u9.debian.tar.xz
b10224f6264a6051626799c5e7480c22fd6470710a25437b659f6394169c81b1 11403 curl_7.74.0-1.3+deb11u9_amd64.buildinfo
Files:
c300220e5d2e53beac4c3ad1b6d5e3c6 2699 web optional curl_7.74.0-1.3+deb11u9.dsc
6fa789bf8dc07d7a35071f326701db9d 70488 web optional curl_7.74.0-1.3+deb11u9.debian.tar.xz
eaa85767f36fd103b470ff3c055b886d 11403 web optional curl_7.74.0-1.3+deb11u9_amd64.buildinfo
-----BEGIN PGP SIGNATURE-----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=UDZm
-----END PGP SIGNATURE-----
Reply to: