Overview

Request 816919 declined

- Security fix: [bsc#1173027, CVE-2020-8177]
* curl can be tricked my a malicious server to overwrite a local
file when using '-J' ('--remote-header-name') and '-i' ('--head')
in the same command line.
- Add curl-CVE-2020-8177.patch

- Security fix: [bsc#1173026, CVE-2020-8169]
* Partial password leak over DNS on HTTP redirect
- Add curl-CVE-2020-8169.patch

- Security fix: [bsc#1173027, CVE-2020-8177]
* curl can be tricked my a malicious server to overwrite a local
file when using '-J' ('--remote-header-name') and '-i' ('--head')
in the same command line.
- Add curl-CVE-2020-8177.patch

- Security fix: [bsc#1173026, CVE-2020-8169]
* Partial password leak over DNS on HTTP redirect
- Add curl-CVE-2020-8169.patch

Loading...
Request History
Marcus Meissner's avatar

msmeissn created request

- Security fix: [bsc#1173027, CVE-2020-8177]
* curl can be tricked my a malicious server to overwrite a local
file when using '-J' ('--remote-header-name') and '-i' ('--head')
in the same command line.
- Add curl-CVE-2020-8177.patch

- Security fix: [bsc#1173026, CVE-2020-8169]
* Partial password leak over DNS on HTTP redirect
- Add curl-CVE-2020-8169.patch

- Security fix: [bsc#1173027, CVE-2020-8177]
* curl can be tricked my a malicious server to overwrite a local
file when using '-J' ('--remote-header-name') and '-i' ('--head')
in the same command line.
- Add curl-CVE-2020-8177.patch

- Security fix: [bsc#1173026, CVE-2020-8169]
* Partial password leak over DNS on HTTP redirect
- Add curl-CVE-2020-8169.patch


Saul Goodman's avatar

licensedigger accepted review

ok


Factory Auto's avatar

factory-auto accepted review

Check script succeeded


Origin Manager's avatar

origin-manager added origin-reviewers as a reviewer

Changing to a lower priority origin.

origin: SUSE:SLE-15-SP2:GA~
origin_old: SUSE:SLE-15-SP2:GA


Origin Manager's avatar

origin-manager added opensuse-review-team as a reviewer

Additional review required based on origin.


Origin Manager's avatar

origin-manager accepted review

origin: SUSE:SLE-15-SP2:GA~
origin_old: SUSE:SLE-15-SP2:GA


Ismail Dönmez's avatar

namtrac accepted review


Lubos Kocman's avatar

lkocman-factory declined request

Hello openSUSE contributor

this submission didn't make it to the openSUSE Leap 15.2 Gold Master
Please submit it as a maintenance update instead.

https://en.opensuse.org/openSUSE:Maintenance_update_process

Thank you for your understanding

openSUSE Release team

openSUSE Build Service is sponsored by