USN-8525-1: curl vulnerabilities | Ubuntu security notices
Harry Sintonen discovered that curl incorrectly handled credentials whenfollowing HTTP redirects in conjunction with .netrc files. An attackercould possibly use this issue to obtain sensitive information. This issueonly affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 18.04 LTS.(CVE-2024-11053) Hiroki Kurosawa discovered that curl incorrectly handled OCSP staplingresponses. A remote attacker could possibly use this…