Opened 9 years ago

Closed 9 years ago

#8144 closed enhancement (fixed)

curl-7.50.1

Reported by: Douglas R. Reno Owned by: Igor Živković
Priority: high Milestone: 7.10
Component: BOOK Version: SVN
Severity: normal Keywords:
Cc:

Description

New minor release with several security fixes. Released earlier this morning (adv to oss-security at 2:09AM CDT)

CVE-2016-5419: TLS session resumption client certificate bypass

http://www.openwall.com/lists/oss-security/2016/08/03/3

CVE-2016-5420: Re-using connections with wrong client certificate

http://www.openwall.com/lists/oss-security/2016/08/03/4

CVE-2016-5421: Use of connection struct after free

http://www.openwall.com/lists/oss-security/2016/08/03/5

Change History (2)

comment:1 by Igor Živković, 9 years ago

Owner: changed from blfs-book@… to Igor Živković
Status: newassigned

comment:2 by Igor Živković, 9 years ago

Resolution: fixed
Status: assignedclosed

Fixed at r17627.

Note: See TracTickets for help on using tickets.