Posted on twitter by Curl author Daniel Stenberg - https://nitter.cz/bagder/status/1709103920914526525

We are cutting the release cycle short and will release curl 8.4.0 on October 11, including a fix for a severity HIGH CVE. Buckle up.

... But this time actually the worst security problem found in curl in a long time

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-38545

you are viewing a single comment's thread
view the rest of the comments
[–] -5 points 2 years ago (3 children)

Why don't they just rewrite it in rust? It would be much safer right?

  • source
  • parent
  • hideshow 6 child comments