Security update for curl
This update for curl fixes several issues. These security issues were fixed: - CVE-2017-1000254: Fix FTP PWD response parser out of bounds read (bsc#1061876). - CVE-2018-1000007: Prevent leaking authentication data to third parties when following redirects (bsc#1077001) Also the following adjustment was made: - Set DEFAULT_SUSE as the default cipher list (bsc#1027712)
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for curl fixes several issues. These security issues were fixed: - CVE-2017-1000254: Fix FTP PWD response parser out of bounds read (bsc#1061876). - CVE-2018-1000007: Prevent leaking authentication data to third parties when following redirects (bsc#1077001) Also the following adjustment was made: - Set DEFAULT_SUSE as the default cipher list (bsc#1027712)
05 / REFERENCES