RHSA-2024:1129: Moderate: curl security update
Moderate: curl security update
Other sources
The curl packages provide the libcurl library and the curl utility for downloading files from servers using various protocols, including HTTP, FTP, and LDAP.Security Fix(es): curl: information disclosure by exploiting a mixed case flaw (CVE-2023-46218) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:1129?
The severity of RHSA-2024:1129 is classified as moderate.
How do I fix RHSA-2024:1129?
To fix RHSA-2024:1129, update the curl package to version 7.76.1-26.el9_3.3.
What vulnerabilities does RHSA-2024:1129 address?
RHSA-2024:1129 addresses an information disclosure vulnerability in curl due to a mixed case flaw.
Which systems are affected by RHSA-2024:1129?
RHSA-2024:1129 affects Red Hat Enterprise Linux for IBM z Systems, x86_64, Power, little endian, and ARM 64.
Are there specific packages to update for RHSA-2024:1129?
Yes, you need to update the curl, libcurl, and their associated debug and minimal packages to resolve RHSA-2024:1129.