Release Info

Advisory: CLSA-2026:1767808644

OS: CentOS 8.4 ELS

Public date: 2026-01-07 17:57:26.991691

Project: curl

Version: 7.61.1-22.el8.tuxcare.els15

Errata link: https://errata.tuxcare.com/els_os/centos8.4els/CLSA-2026-1767808644.html

Changelog

- CVE-2025-9086: cookie: don't treat the leading slash as trailing

Update

Update command: dnf update curl*

Packages list

curl-7.61.1-22.el8.tuxcare.els15.x86_64.rpm curl-minimal-7.61.1-22.el8.tuxcare.els15.x86_64.rpm libcurl-7.61.1-22.el8.tuxcare.els15.i686.rpm libcurl-7.61.1-22.el8.tuxcare.els15.x86_64.rpm libcurl-devel-7.61.1-22.el8.tuxcare.els15.i686.rpm libcurl-devel-7.61.1-22.el8.tuxcare.els15.x86_64.rpm libcurl-minimal-7.61.1-22.el8.tuxcare.els15.i686.rpm libcurl-minimal-7.61.1-22.el8.tuxcare.els15.x86_64.rpm

CVEs

CVE-2025-9086