[ALSA-2023:0333] curl security update
Severity
Moderate
Affected Packages
13
CVEs
1
curl security update
The curl packages provide the libcurl library and the curl utility for downloading files from servers using various protocols, including HTTP, FTP, and LDAP.
Security Fix(es):
- curl: POST following PUT confusion (CVE-2022-32221)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
- ID
- ALSA-2023:0333
- Severity
- moderate
- URL
- https://errata.almalinux.org/ALSA-2023:0333.html
- Published
-
2023-01-23T00:00:00
(20 months ago) - Modified
-
2023-03-13T16:36:41
(18 months ago) - Rights
- Copyright 2023 AlmaLinux OS
- Other Advisories
-
- ALAS2-2022-1882
- ALPINE:CVE-2022-32221
- CURL-CVE-2022-32221
- DSA-5330-1
- ELSA-2023-0333
- FEDORA-2022-39688a779d
- FEDORA-2022-e9d65906c4
- FREEBSD:0F99A30C-7B4B-11ED-9168-080027F5FEC9
- FREEBSD:DC49F6DC-99D2-11ED-86E9-D4C9EF517024
- GLSA-202212-01
- RHSA-2023:0333
- RLSA-2023:0333
- SSA:2022-299-01
- SUSE-SU-2022:3769-1
- SUSE-SU-2022:3770-1
- SUSE-SU-2022:3772-1
- SUSE-SU-2022:3773-1
- SUSE-SU-2022:3774-1
- SUSE-SU-2022:3785-1
- USN-5702-1
- USN-5702-2
- USN-5823-1
Source | # ID | Name | URL |
---|---|---|---|
RHSA | RHSA-2023:0333 | https://access.redhat.com/errata/RHSA-2023:0333 | |
CVE | CVE-2022-32221 | https://access.redhat.com/security/cve/CVE-2022-32221 | |
Bugzilla | 2135411 | https://bugzilla.redhat.com/2135411 | |
Self | ALSA-2023:0333 | https://errata.almalinux.org/9/ALSA-2023-0333.html |
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:rpm/almalinux/libcurl?arch=x86_64&distro=almalinux-9.1 | almalinux | libcurl | < 7.76.1-19.el9_1.1 | almalinux-9.1 | x86_64 | |
Affected | pkg:rpm/almalinux/libcurl?arch=i686&distro=almalinux-9.1 | almalinux | libcurl | < 7.76.1-19.el9_1.1 | almalinux-9.1 | i686 | |
Affected | pkg:rpm/almalinux/libcurl?arch=aarch64&distro=almalinux-9.1 | almalinux | libcurl | < 7.76.1-19.el9_1.1 | almalinux-9.1 | aarch64 | |
Affected | pkg:rpm/almalinux/libcurl-minimal?arch=x86_64&distro=almalinux-9.1 | almalinux | libcurl-minimal | < 7.76.1-19.el9_1.1 | almalinux-9.1 | x86_64 | |
Affected | pkg:rpm/almalinux/libcurl-minimal?arch=i686&distro=almalinux-9.1 | almalinux | libcurl-minimal | < 7.76.1-19.el9_1.1 | almalinux-9.1 | i686 | |
Affected | pkg:rpm/almalinux/libcurl-minimal?arch=aarch64&distro=almalinux-9.1 | almalinux | libcurl-minimal | < 7.76.1-19.el9_1.1 | almalinux-9.1 | aarch64 | |
Affected | pkg:rpm/almalinux/libcurl-devel?arch=x86_64&distro=almalinux-9.1 | almalinux | libcurl-devel | < 7.76.1-19.el9_1.1 | almalinux-9.1 | x86_64 | |
Affected | pkg:rpm/almalinux/libcurl-devel?arch=i686&distro=almalinux-9.1 | almalinux | libcurl-devel | < 7.76.1-19.el9_1.1 | almalinux-9.1 | i686 | |
Affected | pkg:rpm/almalinux/libcurl-devel?arch=aarch64&distro=almalinux-9.1 | almalinux | libcurl-devel | < 7.76.1-19.el9_1.1 | almalinux-9.1 | aarch64 | |
Affected | pkg:rpm/almalinux/curl?arch=x86_64&distro=almalinux-9.1 | almalinux | curl | < 7.76.1-19.el9_1.1 | almalinux-9.1 | x86_64 | |
Affected | pkg:rpm/almalinux/curl?arch=aarch64&distro=almalinux-9.1 | almalinux | curl | < 7.76.1-19.el9_1.1 | almalinux-9.1 | aarch64 | |
Affected | pkg:rpm/almalinux/curl-minimal?arch=x86_64&distro=almalinux-9.1 | almalinux | curl-minimal | < 7.76.1-19.el9_1.1 | almalinux-9.1 | x86_64 | |
Affected | pkg:rpm/almalinux/curl-minimal?arch=aarch64&distro=almalinux-9.1 | almalinux | curl-minimal | < 7.76.1-19.el9_1.1 | almalinux-9.1 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |