Is the curl Important CVE-2023-38545 in SOCKS proxy hostname fixed in RHEL?
Issue
- Is the curl Important CVE-2023-38545 in SOCKS proxy hostname fixed in RHEL?
- Will RHEL update to libcurl 8.4.0 or later?
libcurl-8.4.0
not available in RedHat 8- curl security vulnerability in
CURLPROXY_SOCKS5_HOSTNAME
buffer length overflow
Environment
- Red Hat Enterprise Linux 9, 8, 7, 6
curl
package providinglibcurl
library
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.