Package curl: Information
Source package: curl
Version: 8.18.0-alt1
Build time: Jan 10, 2026, 01:46 PM
Category: Networking/File transfer
Report package bugHome page: https://curl.se/
License: MIT
Summary: Gets a file from a FTP, GOPHER or HTTP server
Description:
Curl is a client to get documents/files from servers, using any of the supported protocols. The command is designed to work without user interaction or any kind of interactivity. Curl offers a busload of useful tricks like proxy support, user authentication, ftp upload, HTTP post, file transfer resume and more.
List of RPM packages built from this SRPM:
curl (riscv64)
curl-debuginfo (riscv64)
libcurl (riscv64)
libcurl-debuginfo (riscv64)
libcurl-devel (riscv64)
curl (riscv64)
curl-debuginfo (riscv64)
libcurl (riscv64)
libcurl-debuginfo (riscv64)
libcurl-devel (riscv64)
Maintainer: Anton Farygin
List of contributors:
Anton Farygin
Andrey Cherepanov
Alexey Shabalin
Egor Ignatov
Michael Shigorin
Gleb Fotengauer-Malinovskiy
Vladimir D. Seleznev
Alexey Tourbin
Dmitry V. Levin
Alexander Bokovoy
Anton Farygin
Andrey Cherepanov
Alexey Shabalin
Egor Ignatov
Michael Shigorin
Gleb Fotengauer-Malinovskiy
Vladimir D. Seleznev
Alexey Tourbin
Dmitry V. Levin
Alexander Bokovoy
Last changed
Jan. 9, 2026 Anton Farygin 8.18.0-alt1
- 8.17.0 -> 8.18.0 - Fixes: * CVE-2025-15224: libssh key passphrase bypass without agent set * CVE-2025-15079: libssh global known_hosts override * CVE-2025-14819: OpenSSL partial chain store policy bypass * CVE-2025-14524: bearer token leak on cross-protocol redirect * CVE-2025-14017: broken TLS options for threaded LDAPS * CVE-2025-13034: No QUIC certificate pinning with GnuTLS
Nov. 5, 2025 Anton Farygin 8.17.0-alt1
- 8.16.0 -> 8.17.0
Sept. 10, 2025 Anton Farygin 8.16.0-alt1
- 8.15.0 -> 8.16.0 (Fixes: CVE-2025-10148, CVE-2025-9086)