[CLSA-2026:1784888062] Fix CVE(s): CVE-2026-15308
Type:
security
Severity:
Important
Release date:
2026-07-24 10:14:48 UTC
Description:
* SECURITY UPDATE: quadratic-complexity CPU denial of service in html.parser - debian/patches/CVE-2026-15308.patch: accumulate incremental feed() data to avoid re-scanning/concatenating unterminated constructs quadratically - CVE-2026-15308
CVEs fixed:
Updated packages:
  • alt-python310_3.10.20-5_amd64.deb
    sha:b397c9f283cfda84385479a0b13c8031f56e9c4a
  • alt-python310-debug_3.10.20-5_amd64.deb
    sha:4935a0048d68ebd5ee0dfbc46b95da7e317e7dad
  • alt-python310-devel_3.10.20-5_amd64.deb
    sha:5c56c3bb1cdbeede40eace8238d87fa57859628f
  • alt-python310-idle_3.10.20-5_amd64.deb
    sha:4369a91292f5b976cd4d237f6c0a6c9445dc2f79
  • alt-python310-libs_3.10.20-5_amd64.deb
    sha:bdb84556f4f524e70b716c21f288313a6211ff04
  • alt-python310-test_3.10.20-5_amd64.deb
    sha:807d0c7d5aec6bf18b6f2dfa3f65a1d4c5ee96c3
  • alt-python310-tkinter_3.10.20-5_amd64.deb
    sha:46ec665bb25b0e1d90012c6df4b34c9a2b3e2227
  • alt-python310_3.10.20-5_arm64.deb
    sha:2fff9ea20cc9dfbcbcd6d22345186b5c48dbce93
  • alt-python310-debug_3.10.20-5_arm64.deb
    sha:bebe39ac8bf09cbc8861911bfc4e8d7d24fd6b02
  • alt-python310-devel_3.10.20-5_arm64.deb
    sha:1ae4c876f2586d5369e836057c9d58839be91aa5
  • alt-python310-idle_3.10.20-5_arm64.deb
    sha:88020bcc7b11282500782d4073ae011e23edfdb3
  • alt-python310-libs_3.10.20-5_arm64.deb
    sha:718e94735d7cff3621f3ad256733d62debc8437b
  • alt-python310-test_3.10.20-5_arm64.deb
    sha:d888b46aa99f5cee2bf7e72c32a34c65045ac64f
  • alt-python310-tkinter_3.10.20-5_arm64.deb
    sha:189dbc235ef982dcd1654df86b7d7014dd732f7a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.