RE: Curl vulnerability

Bill Mercer via curl-users <[email protected]>
Newsgroups gmane.comp.web.curl.general
Message-ID <DS7PR15MB6361029CE113802846EFC435BB202@DS7PR15MB6361.namprd15.prod.outlook.com>
It sounds like you are trying to replace the default version of curl.exe which is preinstalled with Windows.

As of the November 2023 Windows update, the curl version is 8.4.0, so updating your Windows environment should give you the version you require.

If for some reason you can’t apply that update, then your best option is to install a newer curl version in another path, then add that path to the PATH environment variable before the system32 folder.


From: curl-users <[email protected]> On Behalf Of Singh Bisht \ Anand via curl-users
Sent: Wednesday, March 6, 2024 16:39
To: [email protected]
Cc: Singh Bisht \ Anand <[email protected]>
Subject: Curl vulnerability
Importance: High

Hi team,

We have vulnerability of Curl in our environment which require to update curl to above or equal to 8.4 version. Could you provide us the steps to upgrade the curl without deleting or modifying the existing curl exe as we will be using deployment tool to update the curl. When we manually try to rename the existing file in order to place latest curl.exe file it gave error which says “  you require permission  from trustedinstaller to make changes to file.”

Anand Bisht
EUC Lead
NiSource
Mob: +91-9599411154

-- 
Unsubscribe: https://lists.haxx.se/mailman/listinfo/curl-users
Etiquette:   https://curl.se/mail/etiquette.html
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.