[Buildroot] [PATCH 1/1] package/libcurl: security bump version to 7.83.0

Peter Korsgaard peter at korsgaard.com
Fri May 27 19:04:39 UTC 2022


>>>>> "Bernd" == Bernd Kuhls <bernd.kuhls at t-online.de> writes:

 > Changelog: https://curl.se/changes.html#7_83_0
 > Release notes: https://curl.se/news.html

 > Fixes the following CVEs:
 > CVE-2022-22576: OAUTH2 bearer bypass in connection re-use
 > CVE-2022-27774: Credential leak on redirect
 > CVE-2022-27775: Bad local IPv6 connection reuse
 > CVE-2022-27776: Auth/cookie leak on redirect

 > Signed-off-by: Bernd Kuhls <bernd.kuhls at t-online.de>

Committed to 2022.02.x, thanks.

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list