[CLSA-2026:1771501913] curl: Fix of CVE-2025-15079
Type:
security
Severity:
Low
Release date:
2026-02-19 11:51:57 UTC
Description:
- CVE-2025-15079: fix accepting hosts not present in the specified known_hosts during SSH-based SCP/SFTP transfers when global known_hosts contained them restrict host verification to the specified known_hosts file
Updated packages:
  • curl-7.76.1-31.el9_6.1.tuxcare.els4.x86_64.rpm
    sha:32dbbf62f4a974287e7eae3d1fcacab855895e8e57821245e845bec376df7e0c
  • curl-minimal-7.76.1-31.el9_6.1.tuxcare.els4.x86_64.rpm
    sha:0af5e15f2a59fa0f2ec4e17d1f19529020d1c2231060026707c60544372fc880
  • libcurl-7.76.1-31.el9_6.1.tuxcare.els4.i686.rpm
    sha:fa15aa650d7cf32991223f5aef6b4ace57a6f188da073a48e6a68fbc3b609eb5
  • libcurl-7.76.1-31.el9_6.1.tuxcare.els4.x86_64.rpm
    sha:def57013c02b6ef31b40060422ba3cae4f0031ecb27a0427fd3578ebee0ee566
  • libcurl-devel-7.76.1-31.el9_6.1.tuxcare.els4.i686.rpm
    sha:2a4eee5fa503cca3dad09580b2777a2d16871a6b8820a3e250d51b16db6cdb18
  • libcurl-devel-7.76.1-31.el9_6.1.tuxcare.els4.x86_64.rpm
    sha:5904d079290a714f37ce46104e5e2747be65d09adc7d6573795a15f9ec9727e5
  • libcurl-minimal-7.76.1-31.el9_6.1.tuxcare.els4.i686.rpm
    sha:816d10d295636ca96db28b5fcf9a364c47d37981e229cc13cd3a329f65bab46e
  • libcurl-minimal-7.76.1-31.el9_6.1.tuxcare.els4.x86_64.rpm
    sha:f2c993a50a2782c9575079773dcb1232f66c18c91b537737b702f31fd1b0af86
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.