SUSE-SU-2018:2629-1
Dashboard / Vulnerabilities / SUSE-SU-2018:2629-1
SUSE-SU-2018:2629-1
Summary: Security update for curl
Details: This update for curl fixes the following security issues: - CVE-2018-1000120: Prevent buffer overflow in the FTP URL handling that allowed an attacker to cause a denial of service (bsc#1084521). - CVE-2018-14618: Prevent integer overflow in the NTLM authentication code (bsc#1106019)
References: https://www.suse.com/support/update/announcement/2018/suse-su-20182629-1/, https://bugzilla.suse.com/1084521, https://bugzilla.suse.com/1101811, https://bugzilla.suse.com/1106019, https://www.suse.com/security/cve/CVE-2018-1000120, https://www.suse.com/security/cve/CVE-2018-14618
Affected packages
Package
Name: curl
Purl: pkg:rpm/suse/curl&distro=SUSE%20Studio%20Onsite%201.3
Affected ranges
Type: ECOSYSTEM
Events:
