AIX Open Source

AIX Open Source

Share your experiences and connect with fellow developers to discover how to build and manage open source software for the AIX operating system

 View Only

High severity vulnerability found in libcurl and curl

  • 1.  High severity vulnerability found in libcurl and curl

    Posted Tue October 10, 2023 07:33 AM

    Dear Team,

    I would like to know the timeline for the curl update after the security vulnerability was disclosed. Specifically, I would like to know how soon we can expect the new release 8.4.0, which will contain a fix for "probably the worst security problem found in curl in a long time.

    Severity HIGH security problem to be announced with curl 8.4.0 on Oct 11 · curl/curl · Discussion #12026

    GitHub remove preview
    Severity HIGH security problem to be announced with curl 8.4.0 on Oct 11 · curl/curl · Discussion #12026
    We are cutting the release cycle short and will release curl 8.4.0 on October 11, including fixes for a severity HIGH CVE and one severity LOW. The one rated HIGH is probably the worst curl securit...
    View this on GitHub >


    kind regards,
    Joerg



    ------------------------------
    Joerg Kauke
    Unix Administrator
    COOP Switzerland
    ------------------------------