Skip to content

CVE-2025-0725 vulnerability in libcurl #98

Description

@saurabh123321

Your Feature Request

The libcurl-4.dll which was shipped in tesseract-ocr-w64-setup-5.5.0.20241111.exe is flagged for CVE-2025-0725 (https://nvd.nist.gov/vuln/detail/CVE-2025-0725) vulnerability.

Need clarification on below two points :

  1. We see the 5.5.2 release was created on 2025-12-26, but the Windows installer for 5.5.2 doesn't yet appear on the wiki (Downloads page). Could you share an expected publication date ?

  2. Is there a way to get a patched libcurl-4.dll (>= 8.12.0) which has this vulnerability fixed to drop into the existing 5.5.0 install?

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Fields

    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions