cURL: Multiple vulnerabilities Multiple vulnerabilities have been found in cURL, the worst of which may allow attackers to bypass intended restrictions. curl 2017-09-17 2017-09-17 615870 615994 626776 remote 7.55.1 7.55.1

cURL is a tool and libcurl is a library for transferring data with URL syntax.

Multiple vulnerabilities have been discovered in cURL. Please review the CVE identifiers referenced below for details.

Remote attackers could cause a Denial of Service condition, obtain sensitive information, or bypass intended restrictions for TLS sessions.

There is no known workaround at this time.

All cURL users should upgrade to the latest version:

# emerge --sync # emerge --ask --oneshot --verbose ">=net-misc/curl-7.55.1"
CVE-2017-1000099 CVE-2017-1000100 CVE-2017-1000101 CVE-2017-7407 CVE-2017-7468 BlueKnight b-man