First published: Thu Nov 01 2018(Updated: )
USN-3805-1 fixed a vulnerability in curl. This update provides the corresponding update for Ubuntu 12.04 ESM. Original advisory details: Brian Carpenter discovered that the curl command-line tool incorrectly handled error messages. A remote attacker could possibly use this issue to obtain sensitive information. (CVE-2018-16842)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/libcurl3-nss | <7.22.0-3ubuntu4.24 | 7.22.0-3ubuntu4.24 |
=12.04 | ||
All of | ||
ubuntu/curl | <7.22.0-3ubuntu4.24 | 7.22.0-3ubuntu4.24 |
=12.04 | ||
All of | ||
ubuntu/libcurl3-gnutls | <7.22.0-3ubuntu4.24 | 7.22.0-3ubuntu4.24 |
=12.04 | ||
All of | ||
ubuntu/libcurl3 | <7.22.0-3ubuntu4.24 | 7.22.0-3ubuntu4.24 |
=12.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this advisory is USN-3805-2.
The software versions affected by this vulnerability are libcurl3-nss 7.22.0-3ubuntu4.24, curl 7.22.0-3ubuntu4.24, libcurl3-gnutls 7.22.0-3ubuntu4.24, and libcurl3 7.22.0-3ubuntu4.24 on Ubuntu 12.04.
The severity of this vulnerability is not specified in the advisory.
To fix the vulnerability, you should update to the specified version of the affected software packages.
You can find more information about this vulnerability in the references section of the advisory.