SECURITY: curl (CVE-2006-1061)

Yaakov S (Cygwin Ports) yselkowitz@users.sourceforge.net
Fri Mar 24 02:25:00 GMT 2006


libcurl is affected by a buffer overflow in the handling of URLs for
the TFTP protocol, which could be exploited to compromise a user's
system.

Solution: upgrade to 7.15.3.

More information:
http://security.gentoo.org/glsa/glsa-200603-19.xml
http://curl.haxx.se/docs/adv_20060320.html


Yaakov



More information about the Cygwin-apps mailing list