Skip to content

PSMDB-2259 psmdb-70: update curl-minimal due to CVEs - #1402

Merged
vorsel merged 1 commit into
percona:mainfrom
vorsel:psmdb-7.0.43-23
Sep 22, 2026
Merged

vorsel merged 1 commit into
percona:mainfrom
vorsel:psmdb-7.0.43-23

Conversation

@vorsel

@vorsel vorsel commented Sep 22, 2026 •

Copy link
Copy Markdown
Contributor

Due to the high volume of requests, we're unable to provide free service for this account. To continue using the service, please upgarde to a paid plan.

curl-minimal │ CVE-2026-8458 + CVE-2026-8927 │ HIGH │ fixed │ 7.76.1-40.el9_8.5 │ 7.76.1-40.el9_8.7
libcurl-minimal │ CVE-2026-8458 + CVE-2026-8927 │ HIGH │ fixed │ 7.76.1-40.el9_8.5 │ 7.76.1-40.el9_8.7

┌─────────────────┬───────────────┬──────────┬────────┬───────────────────┬───────────────────┬───────────────────────────────────────────────────────┐
│     Library     │ Vulnerability │ Severity │ Status │ Installed Version │   Fixed Version   │                         Title                         │
├─────────────────┼───────────────┼──────────┼────────┼───────────────────┼───────────────────┼───────────────────────────────────────────────────────┤
│ curl-minimal    │ CVE-2026-8458 │ HIGH     │ fixed  │ 7.76.1-40.el9_8.5 │ 7.76.1-40.el9_8.7 │ curl: libcurl: Unauthorized connection reuse due to a │
│                 │               │          │        │                   │                   │ logical error                                         │
│                 │               │          │        │                   │                   │ https://avd.aquasec.com/nvd/cve-2026-8458             │
│                 ├───────────────┤          │        │                   │                   ├───────────────────────────────────────────────────────┤
│                 │ CVE-2026-8927 │          │        │                   │                   │ curl: Information disclosure due to uncleared proxy   │
│                 │               │          │        │                   │                   │ authentication state                                  │
│                 │               │          │        │                   │                   │ https://avd.aquasec.com/nvd/cve-2026-8927             │
├─────────────────┼───────────────┤          │        │                   │                   ├───────────────────────────────────────────────────────┤
│ libcurl-minimal │ CVE-2026-8458 │          │        │                   │                   │ curl: libcurl: Unauthorized connection reuse due to a │
│                 │               │          │        │                   │                   │ logical error                                         │
│                 │               │          │        │                   │                   │ https://avd.aquasec.com/nvd/cve-2026-8458             │
│                 ├───────────────┤          │        │                   │                   ├───────────────────────────────────────────────────────┤
│                 │ CVE-2026-8927 │          │        │                   │                   │ curl: Information disclosure due to uncleared proxy   │
│                 │               │          │        │                   │                   │ authentication state                                  │
│                 │               │          │        │                   │                   │ https://avd.aquasec.com/nvd/cve-2026-8927             │
└─────────────────┴───────────────┴──────────┴────────┴───────────────────┴───────────────────┴───────────────────────────────────────────────────────┘
@vorsel
vorsel merged commit 3b1e2c1 into percona:main Sep 22, 2026
4 of 5 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants