[CLSA-2026:1778778961] curl: Fix of 2 CVEs
Type:
security
Severity:
Critical
Release date:
2026-05-14 20:17:07 UTC
Description:
- CVE-2018-1000120: fix buffer overflow exists in the FTP URL handling - CVE-2018-1000007: fix leak authentication data to third parties in HTTP requests
Updated packages:
  • curl-7.19.7-59.el6.tuxcare.els16.x86_64.rpm
    sha:eafbceb1a0587d912c8b9f1bca86340d41820295047171442bd5d6933d9f6407
  • libcurl-7.19.7-59.el6.tuxcare.els16.i686.rpm
    sha:8a5262d106c1f0da38704610f403f64a209d795a8f6a2de76378063b66f0bd8b
  • libcurl-7.19.7-59.el6.tuxcare.els16.x86_64.rpm
    sha:78f1a01445e6a6b9588e60116ad9b06f2646774a60a2b388e85d33f20dc11a20
  • libcurl-devel-7.19.7-59.el6.tuxcare.els16.i686.rpm
    sha:66aa1265e2813cfd50b7daa0d2d5c0a90013b69597eaeeb970b8340fffd04dfd
  • libcurl-devel-7.19.7-59.el6.tuxcare.els16.x86_64.rpm
    sha:392d028acf31ea3b41de49776ef0e954bc018577c5b2f9875b60f45e39236622
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.