[CLSA-2026:1778889816] curl: Fix of CVE-2026-5545
Type:
security
Severity:
Moderate
Release date:
2026-05-16 00:03:41 UTC
Description:
- CVE-2026-5545: wrong reuse of HTTP Negotiate connection; only allow an existing connection to be reused and "upgraded" to NTLM when neither NTLM nor Negotiate authentication is in flight on it
Updated packages:
  • curl-7.76.1-31.el9_6.1.tuxcare.els10.x86_64.rpm
    sha:e429d8ca5bd9fa65ffbdfe7686d4fa04ad7f267387695a6a709d9f03e8ea8a1e
  • curl-minimal-7.76.1-31.el9_6.1.tuxcare.els10.x86_64.rpm
    sha:7ce582383ca80d6066cae7d4d783a9d40aaaaa8c3fe0a81517ad0e99746b3d58
  • libcurl-7.76.1-31.el9_6.1.tuxcare.els10.i686.rpm
    sha:432efa1f4cd20ea57b235d0b06e9adcf62a19563fc0496475620718832891beb
  • libcurl-7.76.1-31.el9_6.1.tuxcare.els10.x86_64.rpm
    sha:43ae1d2365f01c045fe0d36182f695806347414f519b5f2181f9b2ece9623603
  • libcurl-devel-7.76.1-31.el9_6.1.tuxcare.els10.i686.rpm
    sha:3d05c3ced29d60b311a8d2649f060126e521650da21bea91ca78e580d28204ee
  • libcurl-devel-7.76.1-31.el9_6.1.tuxcare.els10.x86_64.rpm
    sha:06f7fc609b94ad158ee7e960c7509d9b360ff22f759f4b4110613369589c6900
  • libcurl-minimal-7.76.1-31.el9_6.1.tuxcare.els10.i686.rpm
    sha:c174a3c4845b613ef99d990093ad3ce4de4a17f3ed174553e723048881dd2d50
  • libcurl-minimal-7.76.1-31.el9_6.1.tuxcare.els10.x86_64.rpm
    sha:56e2c76965726181e3663f79587a979bbf117182940c7d27356fe4172473924e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.