libcurl: security bump to version 7.42.0
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Thu, 23 Apr 2015 05:46:07 +0000 (02:46 -0300)
committerThomas Petazzoni <thomas.petazzoni@free-electrons.com>
Thu, 23 Apr 2015 07:45:03 +0000 (09:45 +0200)
commit4c8e6796814a03f564cfbab2cb7663d0f598655a
tree162934224fb4367cce5d97419e209b7eafb0b93b
parent096772d430b771408f020e08d6fc9c6861d68d3d
libcurl: security bump to version 7.42.0

Fixes:
CVE-2015-3144 - host name out of boundary memory access
CVE-2015-3145 - cookie parser out of boundary memory access
CVE-2015-3148 - Negotiate not treated as connection-oriented
CVE-2015-3143 - Re-using authenticated connection when unauthenticated

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
package/libcurl/0001-connectionexists-fix-build-without-NTLM.patch [new file with mode: 0644]
package/libcurl/0002-connectionexists-follow-up-to-fd9d3a1ef1f.patch [new file with mode: 0644]
package/libcurl/libcurl.hash
package/libcurl/libcurl.mk