gmane.comp.web.curl.announce archive
391 archived articles, newest first (page 2 of 4). Latest articles →
curl: CVE-2023-28322: more POST-after-PUT confusion
Wed, 17 May 2023 08:41:12 +0200 (CEST)curl: CVE-2023-28321: IDN wildcard match
Wed, 17 May 2023 08:41:08 +0200 (CEST)curl: CVE-2023-28320: siglongjmp race condition
Wed, 17 May 2023 08:41:05 +0200 (CEST)curl: CVE-2023-28319: UAF in SSH sha256 fingerprint check
Wed, 17 May 2023 08:40:59 +0200 (CEST)[RELEASE] curl 8.1.0
Wed, 17 May 2023 08:33:58 +0200 (CEST)[RELEASE] curl 8.0.1
Mon, 20 Mar 2023 14:58:25 +0100 (CET)[SECURITY ADVISORY] curl: CVE-2023-27538: SSH connection too eager reuse still
Mon, 20 Mar 2023 08:26:21 +0100 (CET)[SECURITY ADVISORY] curl: CVE-2023-27537: HSTS double-free
Mon, 20 Mar 2023 08:26:17 +0100 (CET)[SECURITY ADVISORY] curl: CVE-2023-27536: GSS delegation too eager connection re-use
Mon, 20 Mar 2023 08:26:12 +0100 (CET)[SECURITY ADVISORY] curl: CVE-2023-27535: FTP too eager connection reuse
Mon, 20 Mar 2023 08:26:09 +0100 (CET)[SECURITY ADVISORY] curl: CVE-2023-27534: SFTP path ~ resolving discrepancy
Mon, 20 Mar 2023 08:26:06 +0100 (CET)[SECURITY ADVISORY] curl: CVE-2023-27533: TELNET option IAC injection
Mon, 20 Mar 2023 08:26:02 +0100 (CET)[RELEASE] curl 8.0.0
Mon, 20 Mar 2023 08:25:49 +0100 (CET)[RELEASE] 7.88.1
Mon, 20 Feb 2023 08:40:33 +0100 (CET)curl: CVE-2023-23916: HTTP multi-header compression denial of service
Wed, 15 Feb 2023 08:28:58 +0100 (CET)curl: CVE-2023-23915: HSTS amnesia with --parallel
Wed, 15 Feb 2023 08:28:55 +0100 (CET)curl: CVE-2023-23914: HSTS ignored on multiple requests
Wed, 15 Feb 2023 08:28:50 +0100 (CET)[RELEASE] curl 7.88.0
Wed, 15 Feb 2023 08:28:14 +0100 (CET)curl: CVE-2022-43552: HTTP Proxy deny use-after-free
Wed, 21 Dec 2022 08:24:27 +0100 (CET)curl: CVE-2022-43551: Another HSTS bypass via IDN
Wed, 21 Dec 2022 08:23:58 +0100 (CET)[RELEASE] curl 7.87.0
Wed, 21 Dec 2022 08:20:26 +0100 (CET)[SECURITY ADVISORY] CVE-2022-42916: HSTS bypass via IDN (curl)
Wed, 26 Oct 2022 08:26:48 +0200 (CEST)[SECURITY ADVISORY] CVE-2022-42915: HTTP proxy double-free (curl)
Wed, 26 Oct 2022 08:26:44 +0200 (CEST)[SECURITY ADVISORY] CVE-2022-35260: .netrc parser out-of-bounds access (curl)
Wed, 26 Oct 2022 08:26:39 +0200 (CEST)[SECURITY ADVISORY] CVE-2022-32221: POST following PUT confusion (curl)
Wed, 26 Oct 2022 08:26:35 +0200 (CEST)[RELEASE] curl 7.86.0
Wed, 26 Oct 2022 08:26:10 +0200 (CEST)[SECURITY ADVISORY] CVE-2022-35252: control code in cookie denial of service (curl)
Wed, 31 Aug 2022 08:31:44 +0200 (CEST)[RELEASE] curl 7.85.0
Wed, 31 Aug 2022 08:29:36 +0200 (CEST)[SECURITY ADVISORY] curl: FTP-KRB bad message verification
Mon, 27 Jun 2022 08:21:14 +0200 (CEST)[SECURITY ADVISORY] curl: CVE-2022-32207: Unpreserved file permissions
Mon, 27 Jun 2022 08:20:42 +0200 (CEST)[SECURITY ADVISORY] curl: CVE-2022-32206: HTTP compression denial of service
Mon, 27 Jun 2022 08:20:10 +0200 (CEST)[SECURITY ADVISORY] curl: CVE-2022-32205: Set-Cookie denial of service
Mon, 27 Jun 2022 08:19:23 +0200 (CEST)[RELEASE] curl 7.84.0
Mon, 27 Jun 2022 08:17:46 +0200 (CEST)[SECURITY ADVISORY] curl: HSTS bypass via trailing dot
Wed, 11 May 2022 08:42:11 +0200 (CEST)[SECURITY ADVISORY] curl: TLS and SSH connection too eager reuse
Wed, 11 May 2022 08:41:12 +0200 (CEST)[SECURITY ADVISORY] curl: CERTINFO never-ending busy-loop
Wed, 11 May 2022 08:40:29 +0200 (CEST)[SECURITY ADVISORY] curl: percent-encoded path separator in URL host
Wed, 11 May 2022 08:38:18 +0200 (CEST)[SECURITY ADVISORY] curl: cookie for trailing dot TLD
Wed, 11 May 2022 08:37:37 +0200 (CEST)[SECURITY ADVISORY] curl: removes wrong file on error
Wed, 11 May 2022 08:36:59 +0200 (CEST)[RELEASE] curl 7.83.1
Wed, 11 May 2022 08:34:29 +0200 (CEST)[SECURITY ADVISORY] curl auth/cookie leak on redirect
Wed, 27 Apr 2022 08:43:42 +0200 (CEST)[SECURITY ADVISORY] curl bad local IPv6 connection reuse
Wed, 27 Apr 2022 08:42:57 +0200 (CEST)[SECURITY ADVISORY] curl credential leak on redirect
Wed, 27 Apr 2022 08:41:11 +0200 (CEST)[SECURITY ADVISORY] curl OAUTH2 bearer bypass in connection re-use
Wed, 27 Apr 2022 08:40:18 +0200 (CEST)RELEASE: curl 7.83.0
Wed, 27 Apr 2022 08:38:21 +0200 (CEST)RELEASE: curl 7.82.0
Sat, 5 Mar 2022 10:10:38 +0100 (CET)[RELEASE] curl 7.81.0
Wed, 5 Jan 2022 09:02:59 +0100 (CET)[RELEASE] curl 7.80.0
Wed, 10 Nov 2021 07:44:54 +0100 (CET)[RELEASE] curl 7.79.1
Wed, 22 Sep 2021 08:21:55 +0200 (CEST)[SECURITY ADVISORY] curl: STARTTLS protocol injection via MITM
Wed, 15 Sep 2021 08:20:53 +0200 (CEST)[SECURITY ADVISORY] curl: Protocol downgrade required TLS bypassed
Wed, 15 Sep 2021 08:20:49 +0200 (CEST)[SECURITY ADVISORY] curl: UAF and double-free in MQTT sending
Wed, 15 Sep 2021 08:20:45 +0200 (CEST)[RELEASE] curl 7.79.0
Wed, 15 Sep 2021 08:20:13 +0200 (CEST)Soon, the curl mailing lists will move from cool to lists
Fri, 27 Aug 2021 15:03:41 +0200 (CEST)[SECURITY ADVISORY] curl: CURLOPT_SSLCERT mixup with Secure Transport
Wed, 21 Jul 2021 09:16:21 +0200 (CEST)[SECURITY ADVISORY] curl: TELNET stack contents disclosure again
Wed, 21 Jul 2021 09:15:24 +0200 (CEST)[SECURITY ADVISORY] curl: Bad connection reuse due to flawed path name checks
Wed, 21 Jul 2021 09:14:51 +0200 (CEST)[SECURITY ADVISORY] curl: Metalink download sends credentials
Wed, 21 Jul 2021 09:14:18 +0200 (CEST)[SECURITY ADVISORY] curl: Wrong content via metalink not discarded
Wed, 21 Jul 2021 09:13:38 +0200 (CEST)[RELEASE] curl 7.78.0
Wed, 21 Jul 2021 09:05:53 +0200 (CEST)[SECURITY ADVISORY] curl: TLS session caching disaster
Wed, 26 May 2021 08:44:22 +0200 (CEST)[SECURITY ADVISORY] curl: TELNET stack contents disclosure
Wed, 26 May 2021 08:44:02 +0200 (CEST)[SECURITY ADVISORY] curl: schannel cipher selection surprise
Wed, 26 May 2021 08:43:37 +0200 (CEST)[RELEASE] curl 7.77.0
Wed, 26 May 2021 08:43:07 +0200 (CEST)[RELEASE] curl 7.76.1
Wed, 14 Apr 2021 08:06:24 +0200 (CEST)[SECURITY ADVISORY] curl: TLS 1.3 session ticket proxy host mixup
Wed, 31 Mar 2021 08:02:03 +0200 (CEST)[SECURITY ADVISORY] curl: Automatic referer leaks credentials
Wed, 31 Mar 2021 08:01:59 +0200 (CEST)[RELEASE] curl 7.76.0
Wed, 31 Mar 2021 08:01:51 +0200 (CEST)RELEASE: curl 7.75.0
Wed, 3 Feb 2021 08:21:39 +0100 (CET)[SECURITY ADVISORY] curl: Inferior OCSP verification
Wed, 9 Dec 2020 07:53:37 +0100 (CET)[SECURITY ADVISORY] libcurl: FTP wildcard stack overflow
Wed, 9 Dec 2020 07:53:32 +0100 (CET)[SECURITY ADVISORY] curl: trusting FTP PASV responses
Wed, 9 Dec 2020 07:53:28 +0100 (CET)[RELEASE] curl 7.74.0
Wed, 9 Dec 2020 07:53:18 +0100 (CET)[RELEASE] curl 7.73.0
Wed, 14 Oct 2020 08:02:01 +0200 (CEST)[RELEASE] tiny-curl 7.72.0
Thu, 27 Aug 2020 11:06:56 +0200 (CEST)[SECURITY ADVISORY] libcurl: wrong connect-only connection
Wed, 19 Aug 2020 09:52:57 +0200 (CEST)[RELEASE] curl 7.72.0
Wed, 19 Aug 2020 09:52:51 +0200 (CEST)[RELEASE] curl 7.71.1
Wed, 1 Jul 2020 08:54:41 +0200 (CEST)[SECURITY ADVISORY] curl: overwrite local file with -J
Wed, 24 Jun 2020 08:43:34 +0200 (CEST)[SECURITY ADVISORY] curl: Partial password leak over DNS on HTTP redirect
Wed, 24 Jun 2020 08:43:30 +0200 (CEST)[RELEASE] curl 7.71.0
Wed, 24 Jun 2020 08:43:25 +0200 (CEST)The curl user survey 2020 (reminder)
Sun, 24 May 2020 16:57:42 +0200 (CEST)[RELEASE] curl 7.70.0
Wed, 29 Apr 2020 08:13:48 +0200 (CEST)[RELEASE] curl 7.69.1
Wed, 11 Mar 2020 07:49:28 +0100 (CET)[RELEASE] curl 7.69.0
Wed, 4 Mar 2020 07:53:46 +0100 (CET)[RELEASE] curl 7.67.0
Wed, 6 Nov 2019 07:44:37 +0100 (CET)[SECURITY ADVISORY] curl: TFTP small blocksize heap buffer overflow
Wed, 11 Sep 2019 08:01:09 +0200 (CEST)[SECURITY ADVISORY] curl: FTP-KRB double-free
Wed, 11 Sep 2019 08:01:03 +0200 (CEST)[RELEASE] curl 7.66.0
Wed, 11 Sep 2019 08:00:54 +0200 (CEST)[RELEASE] curl 7.65.3
Fri, 19 Jul 2019 11:44:41 +0200 (CEST)[RELEASE] curl 7.65.2
Wed, 17 Jul 2019 09:38:30 +0200 (CEST)curl: Windows OpenSSL engine code injection
Mon, 24 Jun 2019 07:46:14 +0200 (CEST)[RELEASE] curl 7.65.1
Wed, 5 Jun 2019 08:05:08 +0200 (CEST)[SECURITY ADVISORY] curl: TFTP receive buffer overflow
Wed, 22 May 2019 09:24:16 +0200 (CEST)[SECURITY ADVISORY] curl: Integer overflows in curl_url_set
Wed, 22 May 2019 09:23:51 +0200 (CEST)[RELEASE] curl 7.65.0
Wed, 22 May 2019 09:23:14 +0200 (CEST)RELEASE: curl 7.64.1
Wed, 27 Mar 2019 08:05:54 +0100 (CET)[SECURITY ADVISORY] curl: SMTP end-of-response out-of-bounds read
Wed, 6 Feb 2019 08:12:37 +0100 (CET)[SECURITY ADVISORY] curl: NTLMv2 type-3 header stack buffer overflow
Wed, 6 Feb 2019 08:12:33 +0100 (CET)[SECURITY ADVISORY] curl: NTLM type-2 out-of-bounds buffer read
Wed, 6 Feb 2019 08:12:29 +0100 (CET)
lmpx.com only provides a reader for public news (NNTP) servers. It is not
affiliated with the servers or forums shown here and is not responsible for
the content of articles, which is written by their respective authors.