Описание
Security update for curl
This update for curl fixes the following issues:
- CVE-2025-14524: bearer token leak on cross-protocol redirect (bsc#1255731).
- CVE-2025-14819: libssh global knownhost override (bsc#1255732).
- CVE-2025-15079: libssh key passphrase bypass without agent set (bsc#1255733).
- CVE-2025-15224: OpenSSL partial chain store policy bypass (bsc#1255734).
Список пакетов
Container private-registry/harbor-trivy-adapter:latest
libcurl4-8.14.1-150700.7.8.1
Container suse/postgres:16
libcurl4-8.14.1-150700.7.8.1
Image pr_15_7
libcurl4-8.14.1-150700.7.8.1
SUSE Linux Enterprise Module for Basesystem 15 SP7
curl-8.14.1-150700.7.8.1
libcurl-devel-8.14.1-150700.7.8.1
libcurl4-8.14.1-150700.7.8.1
libcurl4-32bit-8.14.1-150700.7.8.1
Ссылки
- Link for SUSE-SU-2026:0052-1
- E-Mail link for SUSE-SU-2026:0052-1
- SUSE Security Ratings
- SUSE Bug 1255731
- SUSE Bug 1255732
- SUSE Bug 1255733
- SUSE Bug 1255734
- SUSE CVE CVE-2025-14524 page
- SUSE CVE CVE-2025-14819 page
- SUSE CVE CVE-2025-15079 page
- SUSE CVE CVE-2025-15224 page
Описание
unknown
Затронутые продукты
Container private-registry/harbor-trivy-adapter:latest:libcurl4-8.14.1-150700.7.8.1
Container suse/postgres:16:libcurl4-8.14.1-150700.7.8.1
Image pr_15_7:libcurl4-8.14.1-150700.7.8.1
SUSE Linux Enterprise Module for Basesystem 15 SP7:curl-8.14.1-150700.7.8.1
Ссылки
- CVE-2025-14524
- SUSE Bug 1255731
Описание
unknown
Затронутые продукты
Container private-registry/harbor-trivy-adapter:latest:libcurl4-8.14.1-150700.7.8.1
Container suse/postgres:16:libcurl4-8.14.1-150700.7.8.1
Image pr_15_7:libcurl4-8.14.1-150700.7.8.1
SUSE Linux Enterprise Module for Basesystem 15 SP7:curl-8.14.1-150700.7.8.1
Ссылки
- CVE-2025-14819
- SUSE Bug 1255732
Описание
unknown
Затронутые продукты
Container private-registry/harbor-trivy-adapter:latest:libcurl4-8.14.1-150700.7.8.1
Container suse/postgres:16:libcurl4-8.14.1-150700.7.8.1
Image pr_15_7:libcurl4-8.14.1-150700.7.8.1
SUSE Linux Enterprise Module for Basesystem 15 SP7:curl-8.14.1-150700.7.8.1
Ссылки
- CVE-2025-15079
- SUSE Bug 1255733
Описание
unknown
Затронутые продукты
Container private-registry/harbor-trivy-adapter:latest:libcurl4-8.14.1-150700.7.8.1
Container suse/postgres:16:libcurl4-8.14.1-150700.7.8.1
Image pr_15_7:libcurl4-8.14.1-150700.7.8.1
SUSE Linux Enterprise Module for Basesystem 15 SP7:curl-8.14.1-150700.7.8.1
Ссылки
- CVE-2025-15224
- SUSE Bug 1255734