----------------------------------------------------------------------------------
@MSGID: 2:467/4.444 67391b09
Ubuntu Security Notice USN-5964-1
Ubuntu Security Notice 5964-1 - Harry Sintonen discovered that curl
incorrectly handled certain TELNET connection options. Due to lack of
proper input scrubbing, curl could pass on user name and telnet options to
the server as provided, contrary to expectations. Harry Sintonen
discovered that curl incorrectly handled special tilde characters when
used with SFTP paths. A remote attacker could possibly use this issue to
circumvent filtering.
https://packetstormsecurity.com/files/171407/USN-5964-1.txt
Tue, 21 Mar 2023 17:30:09 GMT
________________________________
--- The information is for inforamtional purposes only.
* Origin: Read us with
http://winpoint.org JID:
rs@captflint.com (2:467/4.444)
SEEN-BY: 250/1 463/68 467/4 70 888 5001/100
5005/49 5015/255 5019/40 5020/400
SEEN-BY: 5020/715 848 1042 4441 12000 5023/24
5030/49 1081 5058/104 5060/900
SEEN-BY: 5061/133 5075/128
@PATH: 467/4 463/68 5020/1042 4441