Mandriva Linux Security Advisory : curl (MDVSA-2013:151)
Medium Nessus Plugin ID 66251
SynopsisThe remote Mandriva Linux host is missing one or more security updates.
DescriptionUpdated curl packages fix security vulnerability :
libcurl is vulnerable to a cookie leak vulnerability when doing requests across domains with matching tails. This vulnerability can be used to hijack sessions in targetted attacks since registering domains using a known domain's name as an ending is trivial (CVE-2013-1944).
SolutionUpdate the affected packages.