[Buildroot] [PATCH 1/1] package/libcurl: security bump version to 7.83.0
Peter Korsgaard
peter at korsgaard.com
Fri May 27 19:04:39 UTC 2022
>>>>> "Bernd" == Bernd Kuhls <bernd.kuhls at t-online.de> writes:
> Changelog: https://curl.se/changes.html#7_83_0
> Release notes: https://curl.se/news.html
> Fixes the following CVEs:
> CVE-2022-22576: OAUTH2 bearer bypass in connection re-use
> CVE-2022-27774: Credential leak on redirect
> CVE-2022-27775: Bad local IPv6 connection reuse
> CVE-2022-27776: Auth/cookie leak on redirect
> Signed-off-by: Bernd Kuhls <bernd.kuhls at t-online.de>
Committed to 2022.02.x, thanks.
--
Bye, Peter Korsgaard
More information about the buildroot
mailing list