File _patchinfo of Package patchinfo.43131

<patchinfo incident="43131">
  <!--generated with prepare-update from request 403195-->
  <issue tracker="bnc" id="1259362">VUL-0: EMBARGOED: CVE-2026-1965: curl: bad reuse of HTTP Negotiate connection</issue>
  <issue tracker="bnc" id="1259363">VUL-0: EMBARGOED: CVE-2026-3783: curl: token leak with redirect and netrc</issue>
  <issue tracker="bnc" id="1259364">VUL-0: EMBARGOED: CVE-2026-3784: curl: wrong proxy connection reuse with credentials</issue>
  <issue tracker="bnc" id="1259365">VUL-0: EMBARGOED: CVE-2026-3805: curl: use after free in SMB connection reuse</issue>
  <issue tracker="cve" id="2026-1965"/>
  <issue tracker="cve" id="2026-3783"/>
  <issue tracker="cve" id="2026-3784"/>
  <issue tracker="cve" id="2026-3805"/>
  <category>security</category>
  <rating>important</rating>
  <packager>pmonrealgonzalez</packager>
  <summary>Security update for curl</summary>
  <description>This update for curl fixes the following issues:

- CVE-2026-1965: bad reuse of HTTP Negotiate connection (bsc#1259362).
- CVE-2026-3783: token leak with redirect and netrc (bsc#1259363).
- CVE-2026-3784: wrong proxy connection reuse with credentials (bsc#1259364).
- CVE-2026-3805: use after free in SMB connection reuse (bsc#1259365).
</description>
</patchinfo>
openSUSE Build Service is sponsored by