PublicDate: 2007-07-18 17:30:00 UTC Candidate: CVE-2007-3564 References: https://ubuntu.com/security/notices/USN-484-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3564 Description: libcurl 7.14.0 through 7.16.3, when built with GnuTLS support, does not check SSL/TLS certificate expiration or activation dates, which allows remote attackers to bypass certain access restrictions. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_curl: released (7.15.1-1ubuntu2.1) edgy_curl: released (7.15.4-1ubuntu2.2) feisty_curl: released (7.15.5-1ubuntu2.1) devel_curl: released (7.16.4-2ubuntu1) upstream_curl: needs-triage