VDB
GCVE-110-MAGEIA-2013-338
GCVE-110-MAGEIA-2013-338
Advisory Published
Updated curl packages fix security vulnerability:
Scott Cantor discovered that curl, a file retrieval tool, would disable the
CURLOPT_SSLVERIFYHOST check when the CURLOPT_SSL_VERIFYPEER setting was
disabled. This would also disable ssl certificate host name checks when it
should have only disabled verification of the certificate trust chain
(CVE-2013-4545).
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | curl | 0 (affected), 7.24.0-1.3.mga2 (unaffected) | — |
| Mageia | curl | 0 (affected), 7.28.1-6.2.mga3 (unaffected) | — |
Aliases
References
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.