[CLSA-2026:1777878036] curl: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2026-05-04 07:00:40 UTC
Description:
- CVE-2019-5436: tftp: use the current blksize for recvfrom() - CVE-2016-8615: cookie: replace use of fgets() with custom version
Updated packages:
  • curl-7.19.7-59.el6.tuxcare.els13.x86_64.rpm
    sha:f0221a4fa81f9d5cb2366f82e753aa6045a1d3ca56396ac59fc65142d78da376
  • libcurl-7.19.7-59.el6.tuxcare.els13.i686.rpm
    sha:5f1b10b09d7c75d9cd02a7a0d3f1d6992f9edbb8d95c7986fa29fec72c225767
  • libcurl-7.19.7-59.el6.tuxcare.els13.x86_64.rpm
    sha:c7603d30c6e59e35bd36094166076cbf47790b421b54b9902eb80f8832cba8a3
  • libcurl-devel-7.19.7-59.el6.tuxcare.els13.i686.rpm
    sha:ced1b92f0bdf17453c996ebf673b280e532e425713075f89eb57f6eeac6ec803
  • libcurl-devel-7.19.7-59.el6.tuxcare.els13.x86_64.rpm
    sha:e502acfc6bc51f8ee136ff6e6ba35d4336f8e8ced803cefc2571c70dfb6be3c4
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.