- curl (7.88.1-10+rpi1+deb12u7) bookworm-staging; urgency=medium
++curl (7.88.1-10+rpi1+deb12u8) bookworm-staging; urgency=medium
+
+ [changes brought forward from 7.88.1-9+rpi1 by Peter Michael Green <plugwash@raspbian.org> at Sat, 20 May 2023 09:55:44 +0000]
+ * Disable testsuite.
+
- -- Raspbian forward porter <root@raspbian.org> Fri, 06 Sep 2024 23:04:19 +0000
++ -- Raspbian forward porter <root@raspbian.org> Wed, 13 Nov 2024 02:21:55 +0000
++
+ curl (7.88.1-10+deb12u8) bookworm; urgency=medium
+
+ * Team upload.
+ * Import patch for CVE-2024-8096
+ - CVE-2024-8096: When the TLS backend is GnuTLS, curl may incorrectly
+ handle OCSP stapling. If the OCSP status reports an error other than
+ "revoked" (e.g., "unauthorized"), it is not treated as a bad certificate,
+ potentially allowing invalid certificates to be considered valid.
+
+ -- Aquila Macedo Costa <aquilamacedo@riseup.net> Tue, 17 Sep 2024 16:29:24 -0300
curl (7.88.1-10+deb12u7) bookworm; urgency=medium