RHSA-2023:7743: Low: curl security update
Low: curl security update
Other sources
The curl packages provide the libcurl library and the curl utility for downloading files from servers using various protocols, including HTTP, FTP, and LDAP.Security Fix(es): curl: Use-after-free triggered by an HTTP proxy deny response (CVE-2022-43552) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2023:7743?
The severity of RHSA-2023:7743 is categorized as low.
How do I fix RHSA-2023:7743?
To fix RHSA-2023:7743, you need to update the curl package to version 7.29.0-59.el7_9.2.
Which software is affected by RHSA-2023:7743?
RHSA-2023:7743 affects multiple Red Hat Enterprise Linux products including Desktop, Server, and Workstation.
Is curl the only package involved in RHSA-2023:7743?
No, RHSA-2023:7743 also involves curl-debuginfo, libcurl, and libcurl-devel packages.
What platforms does RHSA-2023:7743 apply to?
RHSA-2023:7743 applies to Red Hat Enterprise Linux for Power, IBM z Systems, and various architectures like x86_64 and ppc64le.