60 Commits

Author SHA1 Message Date
sherlock2010
99e4b4b589 backport some patches from community
(cherry picked from commit 2021009b92fde2ca730441324e6a0f59303a5c0c)
2025-05-07 14:51:04 +08:00
xingwei
208420b5b0 backport patches
(cherry picked from commit f7914ece01af83927d543ae26225f9f7aeab2520)
2025-03-25 17:16:45 +08:00
sherlock2010
29021239cc fix CVE-2025-0167 CVE-2025-0725
(cherry picked from commit 6ec50c4d45890f9dcb508ed98cad3f9a885ab385)
2025-02-11 16:12:08 +08:00
sherlock2010
29fb5e0efb fix CVE-2024-11053
(cherry picked from commit 5f58cdffa3f30fef73fa8c6226a34b0032aa60dc)
2025-01-07 19:54:42 +08:00
sherlock2010
eb2a3bbd7c cookie: treat cookie name case sensitively
(cherry picked from commit e5dd4d2aacf994c5611acd98ce604fca302347e3)
2024-12-10 15:39:24 +08:00
sherlock2010
3f7e2bb7e9 multi: check that the multi handle is valid in curl_multi_assign
(cherry picked from commit be63e5cab47cf9f7c8f2e41a35bff9f6a364336e)
2024-12-02 16:23:59 +08:00
yangl777
3626aa2810 fix CVE-2024-9681
(cherry picked from commit 2e051d6a465bf85f4af2a922bc424964b8e1b412)
2024-11-12 11:19:09 +08:00
sherlock2010
5bfb6ed22a url: allow DoH transfers to override max connection limit
(cherry picked from commit b4efa74dd0f2d7281e4ad2f7a3e65d2426d761e7)
2024-09-23 10:49:06 +08:00
sherlock2010
f64d61dc7c fix CVE-2024-8096
(cherry picked from commit 3b1fe68ba06b29e4f39d1e55516ff99be774e89c)
2024-09-12 15:02:54 +08:00
sherlock2010
2a7aa747c8 revert modify licence from curl to MIT
(cherry picked from commit 7fed7d59940d69cca92c9841126d2aa823e090a7)
2024-09-05 19:29:13 +08:00
zhangxianjun
8b11fce37e modify licence from curl to MIT
(cherry picked from commit 59359aaca0b38b1290398fb23400fcc5774f0113)
2024-09-05 16:58:13 +08:00
yinyongkang
4cb6bea709 fix CVE-2024-7264
(cherry picked from commit 2bafd8c6066d248c55bbd82219a52d0464ec71f5)
2024-08-13 10:12:31 +08:00
sherlock2010
43dd78b8e2 backport some patches from community
(cherry picked from commit 1fed2e6238f25d78d28764e00c3b7220ca356f49)
2024-06-24 19:51:00 +08:00
sherlock2010
cb046bcdf8 add version require of nghttp2 for libcurl
(cherry picked from commit f5677240c81bf441e1a315f9c69f6c6db2f4c127)
2024-06-12 16:27:58 +08:00
baiguo
8290b7ca33 tool_cb_rea: limit rate unpause for -T . uploads
(cherry picked from commit 116887b33e412067dddb00c4240fe2b4b48d6279)
2024-05-23 11:36:12 +08:00
sherlock2010
12f7016766 fix CVE-2024-2004 CVE-2024-2398
(cherry picked from commit dd68bf8b01e10e49326060bc794f42650d05d82d)
2024-04-01 19:50:59 +08:00
sherlock2010
1d3fb9efea update curl to 8.4.0 2024-01-09 11:17:48 +00:00
sherlock2010
bf26c4ec67 backport some patches from community 2023-12-28 06:57:28 +00:00
sherlock2010
cdf073516b fix CVE-2023-46218 CVE-2023-46219 2023-12-08 03:45:08 +00:00
sherlock2010
899d5f2e47 fix CVE-2023-38545 CVE-2023-38546 2023-10-12 13:57:45 +08:00
eaglegai
34089cf56a fix CVE-2023-38039 2023-09-14 14:44:10 +08:00
yangl777
f907a3210a backport some patches from community 2023-09-06 14:30:24 +08:00
sherlock2010
36f3729c77 fix CVE-2023-32001 2023-07-20 11:35:21 +00:00
eaglegai
75ee662eef update curl to 8.1.2 2023-07-15 02:23:17 +00:00
sherlock2010
65420bab7e disable valgrind in tests 2023-06-10 07:54:19 +00:00
xingwei
6c7e0eb383 fix CVE-2023-28320,CVE-2023-28321,CVE-2023-28322 2023-06-08 12:01:30 +00:00
zengwefeng
01bf9a900e fix CVE-2023-27533 CVE-2023-27534 CVE-2023-27535 CVE-2023-27536 CVE-2023-27537 CVE-2023-27538 2023-03-23 11:59:01 +08:00
xinghe
1cafb2b800 upgrade to 7.88.1 2023-03-02 06:52:08 +00:00
xinghe
e58a7a7369 fix CVE-2023-23914 CVE-2023-23915 CVE-2023-23916 2023-02-18 04:39:23 +00:00
sherlock2010
98d9092bd9 fix CVE-2022-43551 CVE-2022-43552 2022-12-22 08:08:34 +00:00
xinghe
7d8b090f08 upgrade to 7.86.0 2022-11-16 11:05:28 +00:00
yangl777
fed54f300d fix CVE-2022-32221 CVE-2022-42915 CVE-2022-42916
(cherry picked from commit 629c69990093152e329f66f6b50c82dbc7a58ee3)
2022-10-28 15:21:07 +08:00
yangl777
b1696e3cc9 Move autoreconf to build 2022-10-27 12:05:28 +00:00
sherlock2010
c8827bfadd CVE-2022-35252
(cherry picked from commit ae367a79d76928d7dd3d9b24df1ee5a07afa8d80)
2022-09-01 16:53:40 +08:00
eaglegai
01a8ae14ad rebuild release to 7.79.1-9
(cherry picked from commit 4c4ac1f8a92e9ca19010cef509cdbb0303d6e5c6)
2022-07-28 16:12:06 +08:00
eaglegai
870bec2639 fix build error 2022-07-25 08:38:45 +00:00
eaglegai
49c5948e85 fix CVE-2022-32207 better 2022-07-05 14:40:13 +08:00
eaglegai
b18dd1b34c fix CVE-2022-32205 CVE-2022-32206 CVE-2022-32207 CVE-2022-32208 2022-06-29 11:23:21 +08:00
eaglegai
0e666937fb fix CVE-2022-27781 CVE-2022-27782 2022-05-17 16:59:16 +08:00
yangl777
6792ef0dad fix skip testsuite 2022-05-14 15:22:36 +08:00
eaglegai
ff67bee66d fix CVE-2022-22576 CVE-2022-27774 CVE-2022-27775 CVE-2022-27776 2022-05-10 10:32:19 +08:00
robertxw
02d2ad7c98 enable check in spec 2022-04-25 10:51:52 +08:00
gaoxingwang
7a24167669 update to 7.79.1 2022-01-20 21:49:28 +08:00
yangl777
8d50362ed6 fix CVE-2021-22945 CVE-2021-22946 CVE-2021-22947 2021-09-29 11:23:20 +08:00
eaglegai
2530794d42 fix CVE-2021-22925 CVE-2021-22926 2021-08-13 10:13:53 +08:00
eaglegai
1e1a6740cd update curl to 7.77.0 2021-07-08 11:02:05 +08:00
eaglegai
dd002d235f fix CVE-2021-22897 CVE-2021-22898 2021-06-08 14:33:33 +08:00
eaglegai
e5e1a7358c fix CVE-2021-22890 2021-04-20 10:19:34 +08:00
xielhxie
b9e8f11e55 fix CVE-2021-22876 2021-04-09 15:23:30 +08:00
wangxp006
a9024a2d93 fix CVE-2020-8285 2021-01-26 20:01:16 +08:00