Errata overview
Errata ID 432
Date 2019-02-27
Source package curl
Fixed in version 7.52.1-5+deb9u9
Description
This update addresses the following issues:
* Fix NTLM type-2 out-of-bounds buffer read (CVE-2018-16890)
* Fix NTLMv2 type-3 header stack buffer overflow (CVE-2019-3822)
* Fix SMTP end-of-response out-of-bounds read (CVE-2019-3823)
Additional notes
CVE ID CVE-2018-16890
CVE-2019-3822
CVE-2019-3823
UCS Bug number #48786