[CLSA-2026:1771501223] curl: Fix of CVE-2025-15079
Type:
security
Severity:
Low
Release date:
2026-02-19 11:40:30 UTC
Description:
- CVE-2025-15079: fix accepting hosts not present in the specified known_hosts during SSH-based SCP/SFTP transfers when global known_hosts contained them restrict host verification to the specified known_hosts file
Updated packages:
  • curl-7.76.1-31.el9_2.1.tuxcare.els4.x86_64.rpm
    sha:1449165f912d6e5206d50b3a8ebf127e00ab732a337c524ccb6f65a10cb7f551
  • curl-minimal-7.76.1-31.el9_2.1.tuxcare.els4.x86_64.rpm
    sha:d7059654af8789dd5371a1c0c1fa88c547ba5c503a72727632fd07f8fe950d3e
  • libcurl-7.76.1-31.el9_2.1.tuxcare.els4.i686.rpm
    sha:e5cfd5d5a3c0ae9b5ea6af45917d410568f85332c2fecc18c902a0c87d49b9bb
  • libcurl-7.76.1-31.el9_2.1.tuxcare.els4.x86_64.rpm
    sha:70f6154bc5c5a269245222a081b1b682f220e3560b7a80d02382d99e9b1b50ff
  • libcurl-devel-7.76.1-31.el9_2.1.tuxcare.els4.i686.rpm
    sha:7b0e0d834b8fcc2f6e382918ee46ab64c4af1e7918e0fdb6f4cbd102feea0834
  • libcurl-devel-7.76.1-31.el9_2.1.tuxcare.els4.x86_64.rpm
    sha:afd93d7bad684a2c01e7d4a51b73b7460f517ea50d24241555a68b3c3d80ad2f
  • libcurl-minimal-7.76.1-31.el9_2.1.tuxcare.els4.i686.rpm
    sha:bd1907f9a5880ca116831b799be8b225075a46729843d8377a8480857857e1df
  • libcurl-minimal-7.76.1-31.el9_2.1.tuxcare.els4.x86_64.rpm
    sha:9f740407fa4217402edfc3bd166281609c13813ed2afaf4249a0aca492401a9b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.