Opened 10 years ago
Closed 10 years ago
#8144 closed enhancement (fixed)
curl-7.50.1
| Reported by: | Douglas R. Reno | Owned by: | Igor Živković |
|---|---|---|---|
| Priority: | high | Milestone: | 7.10 |
| Component: | BOOK | Version: | SVN |
| Severity: | medium | Keywords: | |
| Cc: |
Description
New minor release with several security fixes. Released earlier this morning (adv to oss-security at 2:09AM CDT)
CVE-2016-5419: TLS session resumption client certificate bypass
http://www.openwall.com/lists/oss-security/2016/08/03/3
CVE-2016-5420: Re-using connections with wrong client certificate
http://www.openwall.com/lists/oss-security/2016/08/03/4
CVE-2016-5421: Use of connection struct after free
Change History (2)
comment:1 by , 10 years ago
| Owner: | changed from to |
|---|---|
| Status: | new → assigned |
comment:2 by , 10 years ago
| Resolution: | → fixed |
|---|---|
| Status: | assigned → closed |
Note:
See TracTickets
for help on using tickets.

Fixed at r17627.