How to update curl version to 8.4.0 in rke2 kube-system images

We have an airgapped rke2 cluster with version v1.28.5+rke2r1. In the rke2 kube-system images, the cURL version is 8.0.1. Under CVE-2023-38545, it is suggested to upgrade cURL to 8.4.0. But even in the newer images, I can only see the cURL version of 8.0.1 as the latest version. Is CVE-2023-38545 not affecting rke2? And how do we manually update the cURL in the kube-system images?