-
Committer:
Bazaar Package Importer
-
Author(s):
Marc Deslauriers
-
Date:
2009-03-03 16:27:30 UTC
-
Revision ID:
james.westby@ubuntu.com-20090303162730-h2zv7owzfa7rzlpc
Tags: 7.18.2-8ubuntu2
* SECURITY UPDATE: Local file exposure via redirect
- debian/patches/security_CVE-2009-0037.patch: add logic to lib/url.c and
lib/urldata.h to limit what protocols curl will automatically follow via a
redirect. By default, it now follows all protocols except FILE and SCP.
- CVE-2009-0037