[Buildroot] [PATCH] package/libcurl: security bump to 8.4.0

Peter Korsgaard peter at korsgaard.com
Wed Oct 11 08:52:30 UTC 2023


>>>>> "Jan" == Jan Čermák <sairon at sairon.cz> writes:

 > Fixes following two vulnerabilities:
 > * CVE-2023-38545: SOCKS5 heap buffer overflow
 >   https://curl.se/docs/CVE-2023-38545.html
 > * CVE-2023-38546: cookie injection with none file
 >   https://curl.se/docs/CVE-2023-38546.html

 > Signed-off-by: Jan Čermák <sairon at sairon.cz>

Committed, thanks.

-- 
Bye, Peter Korsgaard



More information about the buildroot mailing list