~ubuntu-branches/ubuntu/gutsy/curl/gutsy-updates

Viewing all changes in revision 22.

  • Committer: Bazaar Package Importer
  • Author(s): Marc Deslauriers
  • Date: 2009-02-26 15:38:56 UTC
  • Revision ID: james.westby@ubuntu.com-20090226153856-1tio71hjztoig6hw
Tags: 7.16.4-2ubuntu1.1
* SECURITY UPDATE: Local file exposure via redirect
  - debian/patches/security-CVE-2009-0037.patch: add logic to
    include/curl/curl.h, lib/{easy,url}.c and lib/urldata.h to limit what
    protocols curl will automatically follow via a redirect. By default, it
    now follows all protocols except FILE and SCP.
  - CVE-2009-0037

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: