AVG-388

Package lib32-libcurl-compat
Status Fixed
Severity Medium
Type multiple issues
Affected 7.54.1-1
Fixed 7.56.0-1
Current 7.60.0-1 [multilib]
Ticket None
Created Tue Aug 22 18:54:40 2017
Issue Severity Remote Type Description
CVE-2017-1000254 Low Yes Denial of service
When libcurl connects to an FTP server and successfully logs in (anonymous or not), it asks the server for the current directory with the `PWD` command. The...
CVE-2017-1000100 Medium Yes Information disclosure
An information disclosure issue has been found in curl < 7.55.0. When doing a TFTP transfer and curl/libcurl is given a URL that contains a very long file...
CVE-2017-1000099 Low No Information disclosure
An information disclosure issue has been found in curl < 7.55.0. When asking to get a file from a file:// URL, libcurl provides a feature that outputs...
Date Advisory Package Description
05 Oct 2017 ASA-201710-6 lib32-libcurl-compat multiple issues