AIX Open Source

AIX Open Source

Share your experiences and connect with fellow developers to discover how to build and manage open source software for the AIX operating system

 View Only
  • 1.  Security Advisory Curl - Update to 8.11.1 or higher needed

    Posted Wed December 18, 2024 04:55 AM

    Hi AIX OpenSource-Team,

    please update curl, because of various security issues:

    AIX-Toolbox:
    8.9.1

    AFFECTED VERSIONS:
    curl < 8.11.1

    CVE-2024-11053

    CVE-2024-9681


    AFFECTED VERSIONS:
    curl < 8.10.0

    CVE-2024-8096

    https://curl.se/docs/security.html



    ------------------------------
    Tobias Schröer
    ------------------------------


  • 2.  RE: Security Advisory Curl - Update to 8.11.1 or higher needed

    Posted Thu December 19, 2024 12:51 AM

    Thanks for letting us know.
    We will update this package early next year 



    ------------------------------
    Ranjit Ranjan
    ------------------------------



  • 3.  RE: Security Advisory Curl - Update to 8.11.1 or higher needed

    Posted Fri January 17, 2025 06:33 AM

    curl-8.11.1-1.aix7.1.ppc.rpm is now available in AIX Toolbox. It has fixes for the above mentioned CVEs.
    You can use dnf to update to this version of the package.



    ------------------------------
    RESHMA KUMAR
    ------------------------------