A new curl package with the fix for the CVE-2021-22876 within CentOS 6 extended lifecycle support has been rolled out to 100% and is now available for download from our production repository.
Errata: https://errata.cloudlinux.com/els6/CLSA-2021-1617285762.html
curl-7.19.7-56.cloudlinux.els6
yum update curl*