[CLSA-2026:1784815391] alt-python38: Fix of CVE-2026-15308
Type:
security
Severity:
Important
Release date:
2026-07-23 14:03:37 UTC
Description:
- el9: apply 06005 (BIO_eof ASN1 EOF, CPython gh-100372) so test_ssl test_load_verify_cadata / test_connect_cadata pass on OpenSSL >= 3.5 (el9 now ships openssl-libs 3.5.5, whose NOT_ENOUGH_DATA EOF reason code broke _add_ca_certs); the patch was not wired into the RPM spec before, so the CL9 %check failed
CVEs fixed:
Updated packages:
  • alt-python38-3.8.20-21.el9.x86_64.rpm
    sha:7388f535f80be459c859dd8a10b7ff3cb417102d38bf6342484d08f92d17a496
  • alt-python38-devel-3.8.20-21.el9.x86_64.rpm
    sha:913a56d2cdcc34cf51d5c492bfec3849691b4b4bc47071bd02170b08e8ffaec3
  • alt-python38-idle-3.8.20-21.el9.x86_64.rpm
    sha:57cea311f4c01a96a1e21f7050dd22998a80517d971cb655db6f73b77bbdda46
  • alt-python38-libs-3.8.20-21.el9.x86_64.rpm
    sha:ef2b89074edf06fdbd7c618d650e19c1ad510438ae61e48079b4fab530c17fbb
  • alt-python38-test-3.8.20-21.el9.x86_64.rpm
    sha:dc758a91ae507fcbfa2512b90457c0b0e4e487b3945bf2c152d1bee58f414745
  • alt-python38-tkinter-3.8.20-21.el9.x86_64.rpm
    sha:03163d3c28eac8e0c4150af9373a871c9197708b949b729ccd585c14bc271685
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.