VDB
GCVE-VVD-MAGEIA-2026-3
GCVE-VVD-MAGEIA-2026-3
Advisory Published
curl is susceptible to a number of low severity security
vulnerabilities:
CVE-2025-14524: bearer token leak on cross-protocol redirect
CVE-2025-14819: OpenSSL partial chain store policy bypass
CVE-2025-15079: libssh knownhosts file vulnerability
CVE-2025-15224: libssh key passphrase bypass vulnerability
This release fixes these issues.
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | isodumper | 0 (affected), 1.61-1.mga9 (unaffected) | — |
| Mageia | curl | 0 (affected), 7.88.1-4.9.mga9 (unaffected), 0 (affected), 7.88.1-4.9.mga9 (unaffected) | — |
References
Updated isodumper packages fix bugs
advisory
Browse GCVE Records
100 records in the GCVE database · Updated April 16, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.