[OE-core] [PATCH] curl: upgrade to 7.38.0

Maxin B. John maxin.john at enea.com
Thu Sep 25 09:07:17 UTC 2014


Hi Ross,

On Wed, Sep 24, 2014 at 11:27:57PM +0100, Burton, Ross wrote:
> On 10 September 2014 15:43, Maxin B. John <maxin.john at enea.com> wrote:
> > Fixes two HTTP cookie related security bugs:
> >  1. CVE-2014-3613
> >  2. CVE-2014-3620
> 
> Can these be backported instead to 7.37.1?  Upgrading to a new major
> release with many new features is exceptional now we've frozen.
Sure. I will backport and send it soon.
 
> Ross
Best Regards,
Maxin




More information about the Openembedded-core mailing list