Release date:
2026-07-24 13:48:55 UTC
Description:
* SECURITY UPDATE: quadratic-complexity CPU denial of service in html.parser
- debian/patches/CVE-2026-15308.patch: accumulate incremental feed() data
to avoid re-scanning/concatenating unterminated constructs quadratically
- CVE-2026-15308
Updated packages:
-
alt-python310_3.10.20-5_amd64.deb
sha:3ac122f0988db0914e94e536d36a3b9725b345f6
-
alt-python310-debug_3.10.20-5_amd64.deb
sha:4935a0048d68ebd5ee0dfbc46b95da7e317e7dad
-
alt-python310-devel_3.10.20-5_amd64.deb
sha:69a43303585f53c4c3e018a2842fb620c0ff0508
-
alt-python310-idle_3.10.20-5_amd64.deb
sha:853194feebfa43f3de1c90b060fe37c98aa1a413
-
alt-python310-libs_3.10.20-5_amd64.deb
sha:a0d58cd18f993f3f9eb13452f60aba33f14f14d7
-
alt-python310-test_3.10.20-5_amd64.deb
sha:7ff1cd41962d49189275a3c332cf2971713adb22
-
alt-python310-tkinter_3.10.20-5_amd64.deb
sha:f73d8b23bc9c8260c39e7168dac8a3233ab66a4e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.