lp:ubuntu/intrepid-security/curl

Created by James Westby on 2009-07-18 and last modified on 2009-08-13
Get this branch:
bzr branch lp:ubuntu/intrepid-security/curl
Members of Ubuntu branches can upload to this branch. Log in for directions.

Branch merges

Related bugs

Related blueprints

Branch information

Owner:
Ubuntu branches
Review team:
Ubuntu Development Team
Status:
Mature

Recent revisions

34. By Kees Cook on 2009-08-13

* SECURITY UPDATE: SSL cert hostname checking bypass with NULL byte.
  - add debian/patches/cert-null-cn: backported upstream changes.
  - CVE-2009-2417

33. By Marc Deslauriers on 2009-03-03

* SECURITY UPDATE: add fix for CVE-2009-0037 back in
  - debian/patches/security_CVE-2009-0037.patch: updated patch to add missing
    section to lib/easy.c
  - CVE-2009-0037

32. By Marc Deslauriers on 2009-03-02

* SECURITY UPDATE: Local file exposure via redirect
  - debian/patches/security_CVE-2009-0037.patch: add logic to lib/url.c and
    lib/urldata.h to limit what protocols curl will automatically follow via a
    redirect. By default, it now follows all protocols except FILE and SCP.
  - CVE-2009-0037

31. By Nick Ellery on 2008-10-10

Added Recommends: on ca-certificate for curl package (LP: #152781).

30. By Steve Kowalik on 2008-10-11

Call automake-1.9 with --add-missing --copy --force. (LP: #281561)

29. By Steve Kowalik on 2008-10-11

No-change rebuild for libgnutls13 -> libgnutls26 transistion.

28. By Michael Vogt on 2008-06-18

* Merge from debian unstable, remaining changes:
  - Drop the stunnel build dependency.
  - Drop the build-dependency on libdb4.5-dev
  - Add build-dependency on openssh-server
  - Drop libssh2-1-dev from libcurl4-openssl-dev's Depends.

27. By Matthias Klose on 2008-02-08

Use automake-1.9, as used by upstream.

26. By Matthias Klose on 2008-02-08

* Merge from Debian; remaining changes:
  - Drop the stunnel build dependency.
  - Drop the build-dependency on libdb4.5-dev, add build-dependency on
    openssh-server.
  - Drop libssh2-1-dev from libcurl4-openssl-dev's Depends.

25. By Steve Langasek on 2008-01-22

No-change rebuild against libldap-2.4-2.

Branch metadata

Branch format:
Branch format 7
Repository format:
Bazaar repository format 2a (needs bzr 1.16 or later)
Stacked on:
lp:ubuntu/karmic/curl
This branch contains Public information 
Everyone can see this information.

Subscribers