update for curl
- Fix IMAP, POP3 and SMTP URL sanitization (bnc#740452, CVE-2012-0036)
- Disable SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG option when built against an older OpenSSL version (CVE-2010-4180).
- Don't enable SSL_OP_DONT_INSERT_EMPTY_FRAGMENTS (bnc#742306, CVE-2011-3389).
-
Submitted by
Michal Marek (michal-m)
Fixed bugs
bnc#742306
VUL-0: curl sets SSL_OP_ALL
bnc#740452
VUL-0: curl: URL sanitizing vulnerability