-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 SUMMARY cPanel, L.L.C. has updated packages for EasyApache 4 with a patched version of libcurl version 8.5.0. This release addresses vulnerabilities related to CVE-2023-46219 and CVE-2023-46218. We strongly encourage all libcurl users to upgrade to version 8.5.0. AFFECTED VERSIONS All versions of libcurl through 8.4.0. SECURITY RATING The National Vulnerability Database (NIST) has given the following severity ratings to these CVEs: CVE-2023-46219 - MEDIUM libcurl 8.5.0 Fixed vulnerability related toCVE-2023-46219. CVE-2023-46218 - MEDIUM libcurl 8.5.0 Fixed vulnerability related to CVE-2023-46218. SOLUTION cPanel, L.L.C. has released updated packages for EasyApache 4 on December 13, 2023, with libcurl version 8.5.0. Unless you have enabled automatic package updates in your cron, update your system with either your package manager or WHM's Run System Update interface. REFERENCES https://www.cve.org/CVERecord?id=CVE-2023-46219 https://www.cve.org/CVERecord?id=CVE-2023-46218 https://curl.se/docs/security.html -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEEtnCbTMb0IHf2mEGRlSG+3KvZTd8FAmV5978ACgkQlSG+3KvZ Td9rYw//de01vViOcEojjARq9YS7pTMFZGrZbyfv2LlI8B2y9LZfZYSffm9HaTje 059pFyYfPWmeN3ZgypQpcgiPLrpfawzf+P2phhGsRMCwF//QIaPHqqcrPB/L6bHs XUhtF7sC3cJeoloYPW48NsFEWPiDPkckT16dGN+LBVUZv//0+YTEDwA1ZjsgPr/6 m6PNzAU7jQCSpU1RK4JS9wWWbWcvk2FPoRwW2pmoAWm2d95nZIb/yk1aNc/O9bif cI1MklKQFBVzhk/MPQEN0lyLAGgVqt4a4RPkQq4Tf5QmIU6uw+P12zhBIe0Ck+98 f89F6mdX18P2RAr2qUMgiPDxd6i687bDpCXTAD1cfr7TbyPnTvtnSypqVzrtTZUt 1+0Tgv7dcbP68zGPYWW4IqBJM0Dwh+sjLo9DOjSuOxuL+65E4bjA0JAwG+fAkxln K8Rq/Nf9jrYO0F656+03fyOJoWPyMOAhzZliCZPHvY1Vh0+2ELRQtcIfw2dPgn1l vayGy3IqOtLPhjwxmWyNOn1Nqj2KQQAlj+X2ACmzBpwE0fjsW6yVe2xAMoK66MTa cgrirPJHpQXzJk2DkVXkd4pctMbzs9PH2sMVKFPMaFRFmELUv2Un13j7HWsrCYeB 8TKSGfYB8PMp5kHKagRMkq2CA5KxXwFIWYwYqlBHGuyX2P346/A= =1TcQ -----END PGP SIGNATURE-----