{"id":"CLSA-2023-1681491348","summary":"Fix CVE(s): CVE-2023-27536, CVE-2023-27535, CVE-2023-27533","details":"\n   * SECURITY UPDATE: Telnet option IAC injection\n     - debian/patches/CVE-2023-27533.patch: only accept option arguments in\n       ascii to avoid embedded telnet negotiation commands\n     - CVE-2023-27533\n   * SECURITY UPDATE: FTP too eager connection reuse\n     - debian/patches/CVE-2023-27535.patch: add more conditions for connection\n       reuse\n     - CVE-2023-27535\n   * SECURITY UPDATE: GSS delegation too eager connection re-use\n     - debian/patches/CVE-2023-27536.patch: only reuse connections with same\n       GSS delegation\n     - CVE-2023-27536","modified":"2026-06-04T10:05:00.360250392Z","published":"2023-04-14T16:55:52Z","upstream":["CVE-2023-27533","CVE-2023-27535","CVE-2023-27536"],"references":[{"type":"ADVISORY","url":"https://errata.cloudlinux.com/ubuntu16_04-els/CLSA-2023-1681491348"}],"affected":[{"package":{"name":"curl","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/curl?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7.47.0-1ubuntu2.23+tuxcare.els8"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2023-1681491348.json"}},{"package":{"name":"libcurl3","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libcurl3?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7.47.0-1ubuntu2.23+tuxcare.els8"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2023-1681491348.json"}},{"package":{"name":"libcurl3-gnutls","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libcurl3-gnutls?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7.47.0-1ubuntu2.23+tuxcare.els8"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2023-1681491348.json"}},{"package":{"name":"libcurl3-nss","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libcurl3-nss?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7.47.0-1ubuntu2.23+tuxcare.els8"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2023-1681491348.json"}},{"package":{"name":"libcurl4-doc","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libcurl4-doc?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7.47.0-1ubuntu2.23+tuxcare.els8"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2023-1681491348.json"}},{"package":{"name":"libcurl4-gnutls-dev","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libcurl4-gnutls-dev?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7.47.0-1ubuntu2.23+tuxcare.els8"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2023-1681491348.json"}},{"package":{"name":"libcurl4-nss-dev","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libcurl4-nss-dev?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7.47.0-1ubuntu2.23+tuxcare.els8"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2023-1681491348.json"}},{"package":{"name":"libcurl4-openssl-dev","ecosystem":"TuxCare:Ubuntu:16.04","purl":"pkg:deb/tuxcare/libcurl4-openssl-dev?distro=ubuntu-16.04"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7.47.0-1ubuntu2.23+tuxcare.els8"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/ubuntu16.04els/CLSA-2023-1681491348.json"}}],"schema_version":"1.7.5"}