libcurl: security bump to version 7.39.0
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Wed, 5 Nov 2014 14:31:32 +0000 (11:31 -0300)
committerPeter Korsgaard <peter@korsgaard.com>
Thu, 6 Nov 2014 08:09:20 +0000 (09:09 +0100)
commitc30e017a1a6c2d368c4742d55e9ed17f96d29c06
tree1fe3e8419b0bac1773afbb56ebe25a3f95b50faa
parent395c88051efb4b84f752be4eea1b34b13c80a1dc
libcurl: security bump to version 7.39.0

Fixes:
CVE-2014-3707 - libcurl's function curl_easy_duphandle() has a bug that
can lead to libcurl eventually sending off sensitive data that was not
intended for sending.

Removed patch that was upstream and now in the release.

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Reviewed-by: Vicente Olivert Riera <Vincent.Riera@imgtec.com>
Tested-by: Vicente Olivert Riera <Vincent.Riera@imgtec.com>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/libcurl/libcurl-0001-fixtimeout.patch [deleted file]
package/libcurl/libcurl.hash
package/libcurl/libcurl.mk