[CLSA-2026:1784900909] Fix CVE(s): CVE-2026-15308
Type:
security
Severity:
Important
Release date:
2026-07-24 13:48:55 UTC
Description:
* SECURITY UPDATE: quadratic-complexity CPU denial of service in html.parser - debian/patches/CVE-2026-15308.patch: accumulate incremental feed() data to avoid re-scanning/concatenating unterminated constructs quadratically - CVE-2026-15308
CVEs fixed:
Updated packages:
  • alt-python310_3.10.20-5_amd64.deb
    sha:3ac122f0988db0914e94e536d36a3b9725b345f6
  • alt-python310-debug_3.10.20-5_amd64.deb
    sha:4935a0048d68ebd5ee0dfbc46b95da7e317e7dad
  • alt-python310-devel_3.10.20-5_amd64.deb
    sha:69a43303585f53c4c3e018a2842fb620c0ff0508
  • alt-python310-idle_3.10.20-5_amd64.deb
    sha:853194feebfa43f3de1c90b060fe37c98aa1a413
  • alt-python310-libs_3.10.20-5_amd64.deb
    sha:a0d58cd18f993f3f9eb13452f60aba33f14f14d7
  • alt-python310-test_3.10.20-5_amd64.deb
    sha:7ff1cd41962d49189275a3c332cf2971713adb22
  • alt-python310-tkinter_3.10.20-5_amd64.deb
    sha:f73d8b23bc9c8260c39e7168dac8a3233ab66a4e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.