curl (7.88.1-10+deb12u1) bookworm-security; urgency=medium
authorCarlos Henrique Lima Melara <charlesmelara@riseup.net>
Sun, 23 Jul 2023 21:43:52 +0000 (22:43 +0100)
committerCarlos Henrique Lima Melara <charlesmelara@riseup.net>
Sun, 23 Jul 2023 21:43:52 +0000 (22:43 +0100)
commit35d7c50e83464d7de2d559c13d696f43670c055a
treec46f72cb26732d09c73259373d8452648bee620b
parent6f0dc41c18d1799ca7f24898807d967e97d75a9f
parentf62cf86c1f9394ff6c741698c3c6dd1a2ace79c6
curl (7.88.1-10+deb12u1) bookworm-security; urgency=medium

  * Team upload.
  * Fix CVE-2023-32001: TOCTOU race condition in Curl_fopen():
    - Done by d/p/CVE-2023-32001.patch (Closes: #1041812).

[dgit import unpatched curl 7.88.1-10+deb12u1]
61 files changed:
debian/README.source
debian/changelog
debian/control
debian/copyright
debian/curl.install
debian/curl.manpages
debian/gbp.conf
debian/libcurl3-gnutls.install
debian/libcurl3-gnutls.links
debian/libcurl3-gnutls.lintian-overrides
debian/libcurl3-gnutls.symbols
debian/libcurl3-nss.install
debian/libcurl3-nss.links
debian/libcurl3-nss.lintian-overrides
debian/libcurl3-nss.symbols
debian/libcurl4-doc.docs
debian/libcurl4-doc.examples
debian/libcurl4-doc.links
debian/libcurl4-doc.manpages
debian/libcurl4-gnutls-dev.install
debian/libcurl4-gnutls-dev.links
debian/libcurl4-gnutls-dev.manpages
debian/libcurl4-nss-dev.install
debian/libcurl4-nss-dev.links
debian/libcurl4-nss-dev.manpages
debian/libcurl4-openssl-dev.install
debian/libcurl4-openssl-dev.manpages
debian/libcurl4.install
debian/libcurl4.symbols
debian/patches/04_workaround_as_needed_bug.patch
debian/patches/08_enable-zsh.patch
debian/patches/11_omit-directories-from-config.patch
debian/patches/90_gnutls.patch
debian/patches/99_nss.patch
debian/patches/CVE-2023-27533.patch
debian/patches/CVE-2023-27534.patch
debian/patches/CVE-2023-27535.patch
debian/patches/CVE-2023-27536.patch
debian/patches/CVE-2023-27537.patch
debian/patches/CVE-2023-27538.patch
debian/patches/CVE-2023-28319.patch
debian/patches/CVE-2023-28320-1.patch
debian/patches/CVE-2023-28320.patch
debian/patches/CVE-2023-28321.patch
debian/patches/CVE-2023-28322.patch
debian/patches/CVE-2023-32001.patch
debian/patches/Remove-curl-s-LDFLAGS-from-curl-config-static-libs.patch
debian/patches/Use-correct-path-when-loading-libnss-pem-ckbi-.so.patch
debian/patches/build-Divide-mit-krb5-gssapi-link-flags-between-LDFLAGS-a.patch
debian/patches/fix-unix-domain-socket.patch
debian/patches/series
debian/rules
debian/salsa-ci.yml
debian/source/format
debian/tests/control
debian/tests/upstream-tests-gnutls
debian/tests/upstream-tests-nss
debian/tests/upstream-tests-openssl
debian/upstream/metadata
debian/upstream/signing-key.asc
debian/watch