Advisories ยป MGASA-2022-0159

Updated curl packages fix security vulnerability

Publication date: 02 May 2022
Modification date: 02 May 2022
Type: security
Affected Mageia releases : 8
CVE: CVE-2022-22576 , CVE-2022-27774 , CVE-2022-27775 , CVE-2022-27776

Description

OAUTH2 bearer bypass in connection re-use. (CVE-2022-22576)
Credential leak on redirect. (CVE-2022-27774)
Bad local IPv6 connection reuse. (CVE-2022-27775)
Auth/cookie leak on redirect. (CVE-2022-27776)
                

References

SRPMS

8/core