~ubuntu-branches/ubuntu/hardy/curl/hardy-updates

Viewing all changes in revision 28.

  • Committer: Bazaar Package Importer
  • Author(s): Marc Deslauriers
  • Date: 2009-02-26 15:22:47 UTC
  • Revision ID: james.westby@ubuntu.com-20090226152247-v0yh0xlktj7q3ox8
Tags: 7.18.0-1ubuntu2.1
* SECURITY UPDATE: Local file exposure via redirect
  - debian/patches/security-CVE-2009-0037.patch: add logic to
    include/curl/curl.h, lib/{easy,url}.c and lib/urldata.h to limit what
    protocols curl will automatically follow via a redirect. By default, it
    now follows all protocols except FILE and SCP.
  - CVE-2009-0037

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: