<?xml version='1.0' encoding='UTF-8'?>
<oval_definitions xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:unix-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix" xmlns:red-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" xmlns:ind-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#independent" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5">
  <generator>
    <oval:product_name>Tuxcare Errata System</oval:product_name>
    <oval:product_version>0.0.1</oval:product_version>
    <oval:schema_version>5.10</oval:schema_version>
    <oval:timestamp>2026-07-24T13:19:15</oval:timestamp>
  </generator>
  <definitions>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1748350001" version="1">
      <metadata>
        <title>alt-python36: Fix of 4 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2025:1748350001" ref_url="https://cve.tuxcare.com/els-lang/releases/CLSA-2025:1748350001" source="CLSA"/>
        <reference ref_id="CVE-2021-28861" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2021-28861" source="CVE"/>
        <reference ref_id="CVE-2022-45061" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2022-45061" source="CVE"/>
        <reference ref_id="CVE-2023-27043" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2023-27043" source="CVE"/>
        <reference ref_id="CVE-2024-9287" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2024-9287" source="CVE"/>
        <reference ref_id="CVE-2024-6232" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2024-6232" source="CVE"/>
        <reference ref_id="CVE-2024-7592" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2024-7592" source="CVE"/>
        <reference ref_id="CVE-2023-24329" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2023-24329" source="CVE"/>
        <reference ref_id="CVE-2023-40217" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2023-40217" source="CVE"/>
        <description>- CVE-2023-24329: make urllib.parse.urlparse enforce that a scheme must
  begin with an alphabetical ASCII character
- CVE-2023-40217: check for &amp; avoid the ssl pre-close flaw
- CVE-2024-6232: remove backtracking when parsing tarfile headers
- CVE-2024-7592: fix quadratic complexity in parsing double-quoted cookie
  values with backslashes</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2025-05-27"/>
          <updated date="2025-05-27"/>
          <cve cvss3="7.4/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N" cwe="CWE-601" href="https://cve.tuxcare.com/els-lang/cve/CVE-2021-28861" impact="important" public="20220823">CVE-2021-28861</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-407" href="https://cve.tuxcare.com/els-lang/cve/CVE-2022-45061" impact="important" public="20221109">CVE-2022-45061</cve>
          <cve cvss3="5.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-lang/cve/CVE-2023-27043" impact="moderate" public="20230419">CVE-2023-27043</cve>
          <cve cvss3="7.8/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-428" href="https://cve.tuxcare.com/els-lang/cve/CVE-2024-9287" impact="important" public="20241022">CVE-2024-9287</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-1333" href="https://cve.tuxcare.com/els-lang/cve/CVE-2024-6232" impact="important" public="20240903">CVE-2024-6232</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-lang/cve/CVE-2024-7592" impact="important" public="20240819">CVE-2024-7592</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-lang/cve/CVE-2023-24329" impact="important" public="20230217">CVE-2023-24329</cve>
          <cve cvss3="5.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" href="https://cve.tuxcare.com/els-lang/cve/CVE-2023-40217" impact="moderate" public="20230825">CVE-2023-40217</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-6.el7" test_ref="oval:com.tuxcare.clsa:tst:1748350001001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-6.el7" test_ref="oval:com.tuxcare.clsa:tst:1748350001003"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-6.el7" test_ref="oval:com.tuxcare.clsa:tst:1748350001005"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-6.el7" test_ref="oval:com.tuxcare.clsa:tst:1748350001007"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-6.el7" test_ref="oval:com.tuxcare.clsa:tst:1748350001009"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-6.el7" test_ref="oval:com.tuxcare.clsa:tst:1748350001011"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-6.el7" test_ref="oval:com.tuxcare.clsa:tst:1748350001013"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1749037497" version="1">
      <metadata>
        <title>alt-python36: Fix of 2 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2025:1749037497" ref_url="https://cve.tuxcare.com/els-lang/releases/CLSA-2025:1749037497" source="CLSA"/>
        <reference ref_id="CVE-2007-4559" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2007-4559" source="CVE"/>
        <reference ref_id="CVE-2023-6597" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2023-6597" source="CVE"/>
        <description>- CVE-2007-4559: implement PEP 706 - a filter in the tarfile module to
  prevent directory traversal vulnerability
- CVE-2023-6597: prevent tempfile.TemporaryDirectory class dereference
  symlinks</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2025-06-04"/>
          <updated date="2025-06-04"/>
          <cve cvss2="6.8/AV:N/AC:M/Au:N/C:P/I:P/A:P" cwe="CWE-22" href="https://cve.tuxcare.com/els-lang/cve/CVE-2007-4559" impact="moderate" public="20070828">CVE-2007-4559</cve>
          <cve cvss3="7.8/CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:N" cwe="CWE-61" href="https://cve.tuxcare.com/els-lang/cve/CVE-2023-6597" impact="important" public="20240319">CVE-2023-6597</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-7.el7" test_ref="oval:com.tuxcare.clsa:tst:1749037497001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-7.el7" test_ref="oval:com.tuxcare.clsa:tst:1749037497002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-7.el7" test_ref="oval:com.tuxcare.clsa:tst:1749037497003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-7.el7" test_ref="oval:com.tuxcare.clsa:tst:1749037497004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-7.el7" test_ref="oval:com.tuxcare.clsa:tst:1749037497005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-7.el7" test_ref="oval:com.tuxcare.clsa:tst:1749037497006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-7.el7" test_ref="oval:com.tuxcare.clsa:tst:1749037497007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1753205772" version="1">
      <metadata>
        <title>alt-python36: Fix of CVE-2019-9674</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2025:1753205772" ref_url="https://cve.tuxcare.com/els-lang/releases/CLSA-2025:1753205772" source="CLSA"/>
        <reference ref_id="CVE-2019-9674" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2019-9674" source="CVE"/>
        <description>- CVE-2019-9674: add pitfalls to zipfile module documentation</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2025-07-22"/>
          <updated date="2025-07-22"/>
          <cve cvss2="5.0/AV:N/AC:L/Au:N/C:N/I:N/A:P" cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" href="https://cve.tuxcare.com/els-lang/cve/CVE-2019-9674" impact="important" public="20200204">CVE-2019-9674</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-8.el7" test_ref="oval:com.tuxcare.clsa:tst:1753205772001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-8.el7" test_ref="oval:com.tuxcare.clsa:tst:1753205772002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-8.el7" test_ref="oval:com.tuxcare.clsa:tst:1753205772003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-8.el7" test_ref="oval:com.tuxcare.clsa:tst:1753205772004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-8.el7" test_ref="oval:com.tuxcare.clsa:tst:1753205772005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-8.el7" test_ref="oval:com.tuxcare.clsa:tst:1753205772006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-8.el7" test_ref="oval:com.tuxcare.clsa:tst:1753205772007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1753804481" version="1">
      <metadata>
        <title>alt-python27: Fix of 2 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2025:1753804481" ref_url="https://cve.tuxcare.com/els-lang/releases/CLSA-2025:1753804481" source="CLSA"/>
        <reference ref_id="CVE-2022-48560" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2022-48560" source="CVE"/>
        <reference ref_id="CVE-2024-7592" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2024-7592" source="CVE"/>
        <reference ref_id="CVE-2024-6232" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2024-6232" source="CVE"/>
        <reference ref_id="CVE-2022-48565" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2022-48565" source="CVE"/>
        <reference ref_id="CVE-2023-24329" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2023-24329" source="CVE"/>
        <reference ref_id="CVE-2022-45061" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2022-45061" source="CVE"/>
        <reference ref_id="CVE-2022-0391" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2022-0391" source="CVE"/>
        <reference ref_id="CVE-2019-9674" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2019-9674" source="CVE"/>
        <description>- CVE-2022-45061: fix quadratic time idna decoding
- CVE-2019-9674: add pitfalls to zipfile module documentation</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2025-07-29"/>
          <updated date="2025-07-29"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" href="https://cve.tuxcare.com/els-lang/cve/CVE-2022-48560" impact="important" public="20230822">CVE-2022-48560</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" href="https://cve.tuxcare.com/els-lang/cve/CVE-2024-7592" impact="important" public="20240819">CVE-2024-7592</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" href="https://cve.tuxcare.com/els-lang/cve/CVE-2024-6232" impact="important" public="20240903">CVE-2024-6232</cve>
          <cve cvss3="9.8/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" href="https://cve.tuxcare.com/els-lang/cve/CVE-2022-48565" impact="critical" public="20230822">CVE-2022-48565</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" href="https://cve.tuxcare.com/els-lang/cve/CVE-2023-24329" impact="important" public="20230217">CVE-2023-24329</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" href="https://cve.tuxcare.com/els-lang/cve/CVE-2022-45061" impact="important" public="20221109">CVE-2022-45061</cve>
          <cve cvss2="5.0/AV:N/AC:L/Au:N/C:N/I:P/A:N" cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" href="https://cve.tuxcare.com/els-lang/cve/CVE-2022-0391" impact="important" public="20220209">CVE-2022-0391</cve>
          <cve cvss2="5.0/AV:N/AC:L/Au:N/C:N/I:N/A:P" cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" href="https://cve.tuxcare.com/els-lang/cve/CVE-2019-9674" impact="important" public="20200204">CVE-2019-9674</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-14.el7" test_ref="oval:com.tuxcare.clsa:tst:1753804481001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-14.el7" test_ref="oval:com.tuxcare.clsa:tst:1753804481003"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-14.el7" test_ref="oval:com.tuxcare.clsa:tst:1753804481005"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-14.el7" test_ref="oval:com.tuxcare.clsa:tst:1753804481007"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-14.el7" test_ref="oval:com.tuxcare.clsa:tst:1753804481009"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-14.el7" test_ref="oval:com.tuxcare.clsa:tst:1753804481011"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-14.el7" test_ref="oval:com.tuxcare.clsa:tst:1753804481013"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1754040088" version="1">
      <metadata>
        <title>alt-python27: Fix of 3 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2025:1754040088" ref_url="https://cve.tuxcare.com/els-lang/releases/CLSA-2025:1754040088" source="CLSA"/>
        <reference ref_id="CVE-2022-48566" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2022-48566" source="CVE"/>
        <reference ref_id="CVE-2023-40217" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2023-40217" source="CVE"/>
        <reference ref_id="CVE-2021-3733" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2021-3733" source="CVE"/>
        <reference ref_id="CVE-2020-8492" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2020-8492" source="CVE"/>
        <reference ref_id="CVE-2023-27043" ref_url="https://cve.tuxcare.com/els-lang/cve/CVE-2023-27043" source="CVE"/>
        <description>- CVE-2023-27043: reject malformed addresses in email.parseaddr()
- CVE-2020-8492: fix regex in AbstractBasicAuthHandler
- CVE-2021-3733: fix regex in AbstractBasicAuthHandler</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2025-08-01"/>
          <updated date="2025-08-01"/>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N" cwe="CWE-362" href="https://cve.tuxcare.com/els-lang/cve/CVE-2022-48566" impact="moderate" public="20230822">CVE-2022-48566</cve>
          <cve cvss3="5.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" href="https://cve.tuxcare.com/els-lang/cve/CVE-2023-40217" impact="moderate" public="20230825">CVE-2023-40217</cve>
          <cve cvss2="4.0/AV:N/AC:L/Au:S/C:N/I:N/A:P" cvss3="6.5/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-lang/cve/CVE-2021-3733" impact="moderate" public="20220310">CVE-2021-3733</cve>
          <cve cvss2="7.1/AV:N/AC:M/Au:N/C:N/I:N/A:C" cvss3="6.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-lang/cve/CVE-2020-8492" impact="moderate" public="20200130">CVE-2020-8492</cve>
          <cve cvss3="5.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-lang/cve/CVE-2023-27043" impact="moderate" public="20230419">CVE-2023-27043</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1754040088001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1754040088002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1754040088003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1754040088004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1754040088005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1754040088006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1754040088007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1760098071" version="1">
      <metadata>
        <title>alt-python27: Fix of 2 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2025:1760098071" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2025:1760098071" source="CLSA"/>
        <reference ref_id="CVE-2019-20907" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2019-20907" source="CVE"/>
        <reference ref_id="CVE-2021-3737" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2021-3737" source="CVE"/>
        <description>- CVE-2021-3737: stop reading a header if it's too long
- CVE-2019-20907: avoid infinite loop in the tarfile module
- Build and testing fixes in spec</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2025-10-10"/>
          <updated date="2025-10-10"/>
          <cve cvss2="5.0/AV:N/AC:L/Au:N/C:N/I:N/A:P" cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-835" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2019-20907" impact="important" public="20200713">CVE-2019-20907</cve>
          <cve cvss2="7.1/AV:N/AC:M/Au:N/C:N/I:N/A:C" cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-835" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2021-3737" impact="important" public="20220304">CVE-2021-3737</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1760098071001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1760098071002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1760098071003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1760098071004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1760098071005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1760098071006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1760098071007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1760369642" version="1">
      <metadata>
        <title>alt-python27: Fix of CVE-2020-26116</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2025:1760369642" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2025:1760369642" source="CLSA"/>
        <reference ref_id="CVE-2020-26116" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2020-26116" source="CVE"/>
        <description>- CVE-2020-26116: prevent http header injection in httplib</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2025-10-13"/>
          <updated date="2025-10-13"/>
          <cve cvss2="6.4/AV:N/AC:L/Au:N/C:P/I:P/A:N" cvss3="7.2/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N" cwe="CWE-74" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2020-26116" impact="important" public="20200927">CVE-2020-26116</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1760369642001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1760369642002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1760369642003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1760369642004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1760369642005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1760369642006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1760369642007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1762528946" version="1">
      <metadata>
        <title>alt-python36: Fix of 5 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2025:1762528946" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2025:1762528946" source="CLSA"/>
        <reference ref_id="CVE-2025-4330" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4330" source="CVE"/>
        <reference ref_id="CVE-2025-4517" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4517" source="CVE"/>
        <reference ref_id="CVE-2025-4435" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4435" source="CVE"/>
        <reference ref_id="CVE-2025-4138" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4138" source="CVE"/>
        <reference ref_id="CVE-2024-12718" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-12718" source="CVE"/>
        <description>- Fix CVE-2024-12718, CVE-2025-4138, CVE-2025-4330, CVE-2025-4435,
  CVE-2025-4517: fix multiple tarfile extraction filter bypasses
  (filter="tar"/filter="data")
- fix test_tarfile.py</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2025-11-07"/>
          <updated date="2025-11-07"/>
          <cve cvss3="7.3/CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N" cwe="CWE-22" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4330" impact="important" public="20250603">CVE-2025-4330</cve>
          <cve cvss3="7.6/CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L" cwe="CWE-22" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4517" impact="important" public="20250603">CVE-2025-4517</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-706" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4435" impact="important" public="20250603">CVE-2025-4435</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" cwe="CWE-22" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4138" impact="important" public="20250603">CVE-2025-4138</cve>
          <cve cvss3="7.6/CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L" cwe="CWE-22" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-12718" impact="important" public="20250603">CVE-2024-12718</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-13.el7" test_ref="oval:com.tuxcare.clsa:tst:1762528946001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-13.el7" test_ref="oval:com.tuxcare.clsa:tst:1762528946002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-13.el7" test_ref="oval:com.tuxcare.clsa:tst:1762528946003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-13.el7" test_ref="oval:com.tuxcare.clsa:tst:1762528946004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-13.el7" test_ref="oval:com.tuxcare.clsa:tst:1762528946005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-13.el7" test_ref="oval:com.tuxcare.clsa:tst:1762528946006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-13.el7" test_ref="oval:com.tuxcare.clsa:tst:1762528946007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1771342308" version="1">
      <metadata>
        <title>alt-python36: Fix of CVE-2025-13837</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1771342308" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1771342308" source="CLSA"/>
        <reference ref_id="CVE-2025-13837" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13837" source="CVE"/>
        <description>- CVE-2025-13837: fix memory denial of service in plistlib</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-02-17"/>
          <updated date="2026-02-17"/>
          <cve cvss3="5.5/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13837" impact="moderate" public="20251201">CVE-2025-13837</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1771342308001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1771342308002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1771342308003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1771342308004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1771342308005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1771342308006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-16.el7" test_ref="oval:com.tuxcare.clsa:tst:1771342308007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1772110935" version="1">
      <metadata>
        <title>alt-python27: Fix of CVE-2015-20107</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1772110935" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1772110935" source="CLSA"/>
        <reference ref_id="CVE-2015-20107" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2015-20107" source="CVE"/>
        <description>- CVE-2015-20107: mailcap: sanitize the second argument which allowing
  shell commands injection</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-02-26"/>
          <updated date="2026-02-26"/>
          <cve cvss2="8.0/AV:N/AC:L/Au:S/C:P/I:C/A:P" cvss3="7.6/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2015-20107" impact="important" public="20220413">CVE-2015-20107</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1772110935001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1772110935002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1772110935003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1772110935004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1772110935005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1772110935006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1772110935007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1772139305" version="1">
      <metadata>
        <title>alt-python36: Fix of CVE-2015-20107</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1772139305" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1772139305" source="CLSA"/>
        <reference ref_id="CVE-2015-20107" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2015-20107" source="CVE"/>
        <description>- CVE-2015-20107: sanitize the second argument, which allows shell
  command injection in the mailcap module</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-02-26"/>
          <updated date="2026-02-26"/>
          <cve cvss2="8.0/AV:N/AC:L/Au:S/C:P/I:C/A:P" cvss3="7.6/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2015-20107" impact="important" public="20220413">CVE-2015-20107</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1772139305001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1772139305002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1772139305003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1772139305004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1772139305005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1772139305006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1772139305007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1772192257" version="1">
      <metadata>
        <title>alt-python27: Fix of CVE-2025-12084</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1772192257" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1772192257" source="CLSA"/>
        <reference ref_id="CVE-2025-12084" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-12084" source="CVE"/>
        <description>- CVE-2025-12084: remove quadratic behavior in xml.minidom
  node ID cache clearing</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-02-27"/>
          <updated date="2026-02-27"/>
          <cve cvss3="5.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-407" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-12084" impact="moderate" public="20251203">CVE-2025-12084</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1772192257001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1772192257002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1772192257003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1772192257004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1772192257005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1772192257006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1772192257007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1772446097" version="1">
      <metadata>
        <title>alt-python36: Fix of CVE-2025-6075</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1772446097" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1772446097" source="CLSA"/>
        <reference ref_id="CVE-2025-6075" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6075" source="CVE"/>
        <description>- CVE-2025-6075: fix quadratic complexity in os.path.expandvars()</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-03-02"/>
          <updated date="2026-03-02"/>
          <cve cvss3="5.5/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6075" impact="moderate" public="20251031">CVE-2025-6075</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-18.el7" test_ref="oval:com.tuxcare.clsa:tst:1772446097001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-18.el7" test_ref="oval:com.tuxcare.clsa:tst:1772446097002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-18.el7" test_ref="oval:com.tuxcare.clsa:tst:1772446097003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-18.el7" test_ref="oval:com.tuxcare.clsa:tst:1772446097004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-18.el7" test_ref="oval:com.tuxcare.clsa:tst:1772446097005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-18.el7" test_ref="oval:com.tuxcare.clsa:tst:1772446097006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-18.el7" test_ref="oval:com.tuxcare.clsa:tst:1772446097007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1772559096" version="1">
      <metadata>
        <title>alt-python36: Fix of CVE-2025-8194</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1772559096" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1772559096" source="CLSA"/>
        <reference ref_id="CVE-2025-8194" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8194" source="CVE"/>
        <description>- CVE-2025-8194: tarfile: validate archives to ensure member offsets are
  non-negative</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-03-03"/>
          <updated date="2026-03-03"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-835" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8194" impact="important" public="20250728">CVE-2025-8194</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1772559096001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1772559096002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1772559096003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1772559096004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1772559096005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1772559096006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1772559096007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1772721323" version="1">
      <metadata>
        <title>alt-python27: Fix of CVE-2025-8194</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1772721323" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1772721323" source="CLSA"/>
        <reference ref_id="CVE-2025-8194" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8194" source="CVE"/>
        <description>- CVE-2025-8194: tarfile: validate archives to ensure member offsets are
  non-negative</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-03-05"/>
          <updated date="2026-03-05"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-835" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8194" impact="important" public="20250728">CVE-2025-8194</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1772721323001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1772721323002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1772721323003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1772721323004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1772721323005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1772721323006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1772721323007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1773239891" version="1">
      <metadata>
        <title>alt-python27: Fix of CVE-2025-6075</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1773239891" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1773239891" source="CLSA"/>
        <reference ref_id="CVE-2025-6075" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6075" source="CVE"/>
        <description>- CVE-2025-6075: fix quadratic complexity in os.path.expandvars()</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-03-11"/>
          <updated date="2026-03-11"/>
          <cve cvss3="5.5/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6075" impact="moderate" public="20251031">CVE-2025-6075</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1773239891001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1773239891002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1773239891003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1773239891004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1773239891005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1773239891006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1773239891007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1776434301" version="1">
      <metadata>
        <title>alt-python36: Fix of CVE-2026-4519</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1776434301" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1776434301" source="CLSA"/>
        <reference ref_id="CVE-2026-4519" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" source="CVE"/>
        <description>- CVE-2026-4519: reject leading dashes in webbrowser.open() URLs to prevent command-line option injection in browser subprocesses</description>
        <advisory from="packager@tuxcare.com">
          <severity>Low</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-04-17"/>
          <updated date="2026-04-17"/>
          <cve cvss3="3.3000000000000003/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" impact="low" public="20260320">CVE-2026-4519</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1776434301001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1776434301002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1776434301003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1776434301004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1776434301005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1776434301006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1776434301007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1777046583" version="1">
      <metadata>
        <title>alt-python27: Fix of CVE-2026-4519</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1777046583" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1777046583" source="CLSA"/>
        <reference ref_id="CVE-2026-4519" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" source="CVE"/>
        <description>- CVE-2026-4519: reject leading dashes in webbrowser.open() URLs to prevent command-line option injection in browser subprocesses</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-04-24"/>
          <updated date="2026-04-24"/>
          <cve cvss3="7.0/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" impact="important" public="20260320">CVE-2026-4519</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-27.el7" test_ref="oval:com.tuxcare.clsa:tst:1777046583001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-27.el7" test_ref="oval:com.tuxcare.clsa:tst:1777046583002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-27.el7" test_ref="oval:com.tuxcare.clsa:tst:1777046583003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-27.el7" test_ref="oval:com.tuxcare.clsa:tst:1777046583004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-27.el7" test_ref="oval:com.tuxcare.clsa:tst:1777046583005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-27.el7" test_ref="oval:com.tuxcare.clsa:tst:1777046583006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-27.el7" test_ref="oval:com.tuxcare.clsa:tst:1777046583007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1777385319" version="1">
      <metadata>
        <title>alt-python36: Fix of 2 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1777385319" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1777385319" source="CLSA"/>
        <reference ref_id="CVE-2026-6100" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" source="CVE"/>
        <reference ref_id="CVE-2024-0450" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-0450" source="CVE"/>
        <description>- CVE-2024-0450: zipfile raises BadZipFile on quoted-overlap archive
  entries to prevent high-ratio zip bombs
- CVE-2026-6100: use-after-free in lzma/bz2 decompressors when a
  MemoryError leaves a stale next_in pointer on a re-used decompressor</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-04-28"/>
          <updated date="2026-04-28"/>
          <cve cvss3="9.1/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-825" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" impact="critical" public="20260413">CVE-2026-6100</cve>
          <cve cvss3="6.2/CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-450" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-0450" impact="moderate" public="20240319">CVE-2024-0450</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1777385319001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1777385319002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1777385319003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1777385319004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1777385319005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1777385319006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-21.el7" test_ref="oval:com.tuxcare.clsa:tst:1777385319007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1777478282" version="1">
      <metadata>
        <title>alt-python27: Fix of CVE-2026-6100</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1777478282" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1777478282" source="CLSA"/>
        <reference ref_id="CVE-2026-6100" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" source="CVE"/>
        <reference ref_id="CVE-2020-27619" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2020-27619" source="CVE"/>
        <reference ref_id="CVE-2024-0450" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-0450" source="CVE"/>
        <reference ref_id="CVE-2021-3177" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2021-3177" source="CVE"/>
        <reference ref_id="CVE-2021-4189" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2021-4189" source="CVE"/>
        <description>- CVE-2026-6100: NULL bzs-&gt;next_in in error paths in
  BZ2Decomp_decompress.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-04-29"/>
          <updated date="2026-04-29"/>
          <cve cvss3="9.1/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-825" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" impact="critical" public="20260413">CVE-2026-6100</cve>
          <cve cvss3="9.8/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2020-27619" impact="critical" public="20201022">CVE-2020-27619</cve>
          <cve cvss3="6.2/CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-450" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-0450" impact="moderate" public="20240319">CVE-2024-0450</cve>
          <cve cvss3="9.8/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-120" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2021-3177" impact="critical" public="20210119">CVE-2021-3177</cve>
          <cve cvss3="5.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N" cwe="CWE-252" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2021-4189" impact="moderate" public="20220824">CVE-2021-4189</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1777478282001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1777478282002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1777478282003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1777478282004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1777478282005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1777478282006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1777478282007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1777629862" version="1">
      <metadata>
        <title>alt-python27: Fix of 4 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1777629862" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1777629862" source="CLSA"/>
        <reference ref_id="CVE-2024-6923" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-6923" source="CVE"/>
        <reference ref_id="CVE-2021-28861" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2021-28861" source="CVE"/>
        <reference ref_id="CVE-2024-0397" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-0397" source="CVE"/>
        <reference ref_id="CVE-2026-1299" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1299" source="CVE"/>
        <description>- CVE-2026-1299: email.Generator now rejects header *values* containing
  CR/LF that are not followed by folding whitespace by raising
  HeaderWriteError. In Python 2.7 (which lacks BytesGenerator) this
  single Generator-class hardening covers both upstream CVE-2026-1299
  and CVE-2024-6923.
- CVE-2024-6923: email.Generator now rejects header *names* containing
  CR/LF that are not followed by folding whitespace by raising
  HeaderWriteError, preventing header injection through the header
  name.
- CVE-2024-0397: ssl.SSLContext.cert_store_stats and get_ca_certs now
  deep-copy the X509_STORE under X509_STORE_lock (via a backport of
  OpenSSL 3.3's X509_STORE_get1_objects), fixing a memory race when an
  SSLContext is shared across threads.
- CVE-2021-28861: BaseHTTPServer now collapses any leading run of '/'
  in the request path to a single '/' to prevent an open-redirect via
  //evil.example/... URIs in 301 Location headers.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-05-01"/>
          <updated date="2026-05-01"/>
          <cve cvss3="6.8/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-6923" impact="moderate" public="20240801">CVE-2024-6923</cve>
          <cve cvss3="7.4/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N" cwe="CWE-601" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2021-28861" impact="important" public="20220823">CVE-2021-28861</cve>
          <cve cvss3="7.4/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L" cwe="CWE-362" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-0397" impact="important" public="20240617">CVE-2024-0397</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1299" impact="important" public="20260123">CVE-2026-1299</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1777629862001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1777629862002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1777629862003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1777629862004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1777629862005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1777629862006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1777629862007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1777636941" version="1">
      <metadata>
        <title>alt-python36: Fix of 4 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1777636941" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1777636941" source="CLSA"/>
        <reference ref_id="CVE-2024-4032" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-4032" source="CVE"/>
        <reference ref_id="CVE-2024-0397" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-0397" source="CVE"/>
        <reference ref_id="CVE-2026-1299" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1299" source="CVE"/>
        <description>- CVE-2026-1299: email.BytesGenerator now refuses to serialize headers
  that are unsafely folded or contain unfolded newlines, closing a
  header-injection bypass of CVE-2024-6923 (also includes the
  CVE-2024-6923 prerequisite hardening of the string Generator)
- CVE-2024-0397: ssl.SSLContext.cert_store_stats() and get_ca_certs()
  now correctly lock the certificate store via a backported
  X509_STORE_get1_objects shim, fixing a memory race when an
  SSLContext is shared across threads
- CVE-2024-4032: ipaddress is_private/is_global now classify addresses
  per the IANA special-purpose registries (192.0.0.0/24 with 192.0.0.9
  and 192.0.0.10 exceptions, 64:ff9b:1::/48, 2002::/16, and the
  2001::/23 sub-range exceptions)</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-05-01"/>
          <updated date="2026-05-01"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-440" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-4032" impact="important" public="20240617">CVE-2024-4032</cve>
          <cve cvss3="7.4/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L" cwe="CWE-362" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-0397" impact="important" public="20240617">CVE-2024-0397</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1299" impact="important" public="20260123">CVE-2026-1299</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1777636941001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1777636941002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1777636941003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1777636941004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1777636941005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1777636941006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-22.el7" test_ref="oval:com.tuxcare.clsa:tst:1777636941007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1778156502" version="1">
      <metadata>
        <title>alt-python36: Fix of CVE-2026-3446</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1778156502" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1778156502" source="CLSA"/>
        <reference ref_id="CVE-2026-3446" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3446" source="CVE"/>
        <description>- CVE-2026-3446: binascii.a2b_base64 / base64.b64decode no longer abort the
  decoder loop on the first padded quad. The pad character is treated as
  non-alphabet data per RFC 4648 section 3.3, so excess data after the
  padding is decoded instead of being silently dropped.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-05-07"/>
          <updated date="2026-05-07"/>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-1286" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3446" impact="moderate" public="20260410">CVE-2026-3446</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1778156502001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1778156502002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1778156502003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1778156502004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1778156502005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1778156502006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-23.el7" test_ref="oval:com.tuxcare.clsa:tst:1778156502007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1778245807" version="1">
      <metadata>
        <title>alt-python27: Fix of CVE-2026-3446</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1778245807" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1778245807" source="CLSA"/>
        <reference ref_id="CVE-2026-3446" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3446" source="CVE"/>
        <description>- CVE-2026-3446: binascii.a2b_base64 / base64.b64decode no longer abort the
  decoder loop on the first padded quad. The pad character is treated as
  non-alphabet data per RFC 4648 section 3.3, so excess data after the
  padding is decoded instead of being silently dropped.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-05-08"/>
          <updated date="2026-05-08"/>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-1286" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3446" impact="moderate" public="20260410">CVE-2026-3446</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1778245807001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1778245807002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1778245807003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1778245807004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1778245807005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1778245807006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1778245807007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1779274964" version="1">
      <metadata>
        <title>alt-python36: Fix of 4 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1779274964" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1779274964" source="CLSA"/>
        <reference ref_id="CVE-2025-15282" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15282" source="CVE"/>
        <reference ref_id="CVE-2026-3644" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" source="CVE"/>
        <reference ref_id="CVE-2026-4224" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" source="CVE"/>
        <reference ref_id="CVE-2026-0672" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0672" source="CVE"/>
        <description>- CVE-2025-15282: urllib.request.DataHandler accepted data: URLs whose
  mediatype contained C0 control characters, allowing newline-based HTTP
  header injection downstream. Reject control characters in data_open().
- CVE-2026-0672: http.cookies.Morsel did not reject control characters in
  keys, values, or coded_value, allowing cookie injection via __setitem__,
  setdefault, set, and BaseCookie.output. Add a _has_control_character
  helper and validate in those entry points and BaseCookie.OutputString.
- CVE-2026-3644: the CVE-2026-0672 fix was incomplete; control characters
  could still bypass via Morsel.update(), |=, __setstate__, and
  BaseCookie.js_output(). Validate those entry points too and re-validate
  the assembled output string in js_output().
- CVE-2026-4224: Modules/pyexpat.c conv_content_model could overflow the
  C stack when an Expat parser with a registered ElementDeclHandler
  parsed a deeply nested DTD content model, causing a denial-of-service.
  Wrap conv_content_model with Py_EnterRecursiveCall so deep nesting
  raises RecursionError instead of crashing.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-05-20"/>
          <updated date="2026-05-20"/>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15282" impact="moderate" public="20260120">CVE-2025-15282</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" cwe="CWE-791" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" impact="moderate" public="20260316">CVE-2026-3644</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-805" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" impact="moderate" public="20260316">CVE-2026-4224</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0672" impact="moderate" public="20260120">CVE-2026-0672</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1779274964001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1779274964002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1779274964003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1779274964004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1779274964005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1779274964006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-24.el7" test_ref="oval:com.tuxcare.clsa:tst:1779274964007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1779453870" version="1">
      <metadata>
        <title>alt-python27: Fix of 3 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1779453870" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1779453870" source="CLSA"/>
        <reference ref_id="CVE-2026-3644" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" source="CVE"/>
        <reference ref_id="CVE-2026-4224" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" source="CVE"/>
        <reference ref_id="CVE-2026-0672" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0672" source="CVE"/>
        <description>- CVE-2026-4224: Modules/pyexpat.c conv_content_model could overflow the
  C stack when an Expat parser with a registered ElementDeclHandler
  parsed a deeply nested DTD content model, causing a denial-of-service.
  Wrap conv_content_model with Py_EnterRecursiveCall so deep nesting
  raises RuntimeError instead of crashing.
- CVE-2026-0672 + CVE-2026-3644: Lib/Cookie.py Morsel accepted control
  characters in reserved-attribute values, in key/value/coded_value
  via .set(), and via the inherited dict.update() / pickle restoration
  paths, allowing newline-based HTTP header injection via Set-Cookie.
  Add a _has_control_character helper and validate at Morsel.__setitem__,
  .setdefault, .set, an explicit .update, an explicit .__setstate__, plus
  re-validate the assembled output in Morsel.js_output and
  BaseCookie.output (defence-in-depth against direct attribute mutation).
  The py3 __ior__ hunk is not ported (py2 dict has no `|=` operator).</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-05-22"/>
          <updated date="2026-05-22"/>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N" cwe="CWE-791" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" impact="moderate" public="20260316">CVE-2026-3644</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-805" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" impact="moderate" public="20260316">CVE-2026-4224</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0672" impact="moderate" public="20260120">CVE-2026-0672</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-32.el7" test_ref="oval:com.tuxcare.clsa:tst:1779453870001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-32.el7" test_ref="oval:com.tuxcare.clsa:tst:1779453870002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-32.el7" test_ref="oval:com.tuxcare.clsa:tst:1779453870003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-32.el7" test_ref="oval:com.tuxcare.clsa:tst:1779453870004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-32.el7" test_ref="oval:com.tuxcare.clsa:tst:1779453870005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-32.el7" test_ref="oval:com.tuxcare.clsa:tst:1779453870006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-32.el7" test_ref="oval:com.tuxcare.clsa:tst:1779453870007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1779880099" version="1">
      <metadata>
        <title>alt-python36: Fix of 2 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1779880099" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1779880099" source="CLSA"/>
        <reference ref_id="CVE-2026-7210" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" source="CVE"/>
        <description>- CVE-2026-7210 + CVE-2026-41080 (paired): backport libexpat 16-byte
  salt API (XML_SetHashSalt16Bytes) into bundled expat 2.4.1 and wire
  pyexpat/_elementtree to use it. Together these restore proper
  hash-flood mitigation for xml.parsers.expat and
  xml.etree.ElementTree.
    CVE-2026-7210 (cpython 24b8f12): xml.parsers.expat and
  xml.etree.ElementTree used insufficient entropy (a single Py_hash_t)
  for Expat hash-flooding protection. The cpython half of the fix
  seeds the parser with the full 16-byte
  _Py_HashSecret.expat.hashsalt16 via XML_SetHashSalt16Bytes when the
  libexpat being linked exposes that API.
    CVE-2026-41080 (libexpat PR #1183): libexpat's hash-flood
  protection itself only used 4-8 bytes of entropy for the SipHash
  salt. The libexpat half adds the new XML_SetHashSalt16Bytes API
  (and widens the parser's internal salt storage to a full
  struct sipkey) so the 16-byte path is available. Backported into
  the bundled libexpat 2.4.1 tree in Modules/expat/; the bundled
  expat.h now also defines XML_HAS_HASHSALT16BYTES_BACKPORT so the
  cpython 20800 gate activates against the patched bundle without
  bumping the advertised libexpat version. Alpine builds use
  --with-system-expat and are unaffected by the libexpat backport.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-05-27"/>
          <updated date="2026-05-27"/>
          <cve cvss3="9.8/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-331" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" impact="critical" public="20260511">CVE-2026-7210</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1779880099001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1779880099002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1779880099003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1779880099004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1779880099005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1779880099006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-25.el7" test_ref="oval:com.tuxcare.clsa:tst:1779880099007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1780514018" version="1">
      <metadata>
        <title>alt-python36: Fix of 12 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1780514018" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1780514018" source="CLSA"/>
        <reference ref_id="CVE-2025-4516" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4516" source="CVE"/>
        <reference ref_id="CVE-2025-13462" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13462" source="CVE"/>
        <reference ref_id="CVE-2026-1502" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1502" source="CVE"/>
        <reference ref_id="CVE-2024-50602" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-50602" source="CVE"/>
        <reference ref_id="CVE-2024-11168" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-11168" source="CVE"/>
        <reference ref_id="CVE-2026-0865" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0865" source="CVE"/>
        <reference ref_id="CVE-2025-8291" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8291" source="CVE"/>
        <reference ref_id="CVE-2025-6069" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6069" source="CVE"/>
        <reference ref_id="CVE-2025-1795" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-1795" source="CVE"/>
        <reference ref_id="CVE-2025-0938" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-0938" source="CVE"/>
        <reference ref_id="CVE-2026-6019" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6019" source="CVE"/>
        <reference ref_id="CVE-2025-11468" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-11468" source="CVE"/>
        <description>- CVE-2025-13462: tarfile applied AREGTYPE -&gt; DIRTYPE normalization even
  during multi-block GNU long members (LONGNAME / LONGLINK), enabling a
  parsing differential. Thread a dircheck flag through frombuf /
  fromtarfile so normalization is skipped on follow-up headers.
- CVE-2026-0865: wsgiref.headers.Headers did not reject control characters
  in header names / values, allowing HTTP header injection from WSGI
  applications. Combined backport: gh-143917 adds the control-char
  regex check, gh-143916 HTAB follow-up splits the check so HTAB is
  allowed in header values (RFC 9110 Section 5.5) but still rejected
  in header names; LF / CR / DEL remain rejected in both. gh-144370
  also disallows control characters in status in wsgiref.handlers.
- CVE-2026-1502: http.client did not reject CR/LF in HTTPConnection
  CONNECT tunnel host / headers, enabling request injection. Validate the
  tunnel host and per-header name / value in _tunnel().
- CVE-2026-6019: http.cookies.Morsel.js_output() emitted an inline
  &lt;script&gt; snippet that only escaped " and left &lt;/script&gt; intact,
  enabling HTML injection. Base64-encode the cookie value in the
  emitted JavaScript (gh-90309).</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-06-03"/>
          <updated date="2026-06-03"/>
          <cve cvss3="5.9/CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-416" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4516" impact="moderate" public="20250515">CVE-2025-4516</cve>
          <cve cvss3="2.5/CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:N" cwe="CWE-237" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13462" impact="low" public="20260312">CVE-2025-13462</cve>
          <cve cvss3="5.7/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1502" impact="moderate" public="20260410">CVE-2026-1502</cve>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-754" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-50602" impact="moderate" public="20241027">CVE-2024-50602</cve>
          <cve cvss3="6.3/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N" cwe="CWE-1287" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-11168" impact="moderate" public="20241112">CVE-2024-11168</cve>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-74" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0865" impact="moderate" public="20260120">CVE-2026-0865</cve>
          <cve cvss3="4.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-130" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8291" impact="moderate" public="20251007">CVE-2025-8291</cve>
          <cve cvss3="4.3/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-1333" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6069" impact="moderate" public="20250617">CVE-2025-6069</cve>
          <cve cvss3="3.1/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N" cwe="CWE-168" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-1795" impact="low" public="20250228">CVE-2025-1795</cve>
          <cve cvss3="6.8/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-0938" impact="moderate" public="20250131">CVE-2025-0938</cve>
          <cve cvss3="6.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" cwe="CWE-150" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6019" impact="moderate" public="20260422">CVE-2026-6019</cve>
          <cve cvss3="5.7/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-140" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-11468" impact="moderate" public="20260120">CVE-2025-11468</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-28.el7" test_ref="oval:com.tuxcare.clsa:tst:1780514018001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-28.el7" test_ref="oval:com.tuxcare.clsa:tst:1780514018002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-28.el7" test_ref="oval:com.tuxcare.clsa:tst:1780514018003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-28.el7" test_ref="oval:com.tuxcare.clsa:tst:1780514018004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-28.el7" test_ref="oval:com.tuxcare.clsa:tst:1780514018005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-28.el7" test_ref="oval:com.tuxcare.clsa:tst:1780514018006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-28.el7" test_ref="oval:com.tuxcare.clsa:tst:1780514018007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1781101388" version="1">
      <metadata>
        <title>alt-python27: Fix of 2 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1781101388" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1781101388" source="CLSA"/>
        <reference ref_id="CVE-2025-15366" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" source="CVE"/>
        <reference ref_id="CVE-2025-15367" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" source="CVE"/>
        <description>- CVE-2025-15366: imaplib.IMAP4._command() concatenated each argument
  into the wire-level command without inspecting it, so user-controlled
  text (e.g. a username passed to IMAP4.login()) containing CR/LF or
  other control characters could inject a second IMAP command. A
  module-level _control_chars regex and a guard in _command() now reject
  any argument containing a byte in [\x00-\x1F\x7F] with ValueError
  before concatenation.
- CVE-2025-15367: poplib.POP3._putcmd() sent its argument to the server
  without inspecting it, so user-controlled text passed to
  user()/pass_()/apop()/rpop()/top() could inject a second POP3 command.
  _putcmd() now rejects any argument containing a byte in [\x00-\x1F\x7F]
  with ValueError before sending.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-06-10"/>
          <updated date="2026-06-10"/>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" impact="important" public="20260120">CVE-2025-15366</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" impact="important" public="20260120">CVE-2025-15367</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-34.el7" test_ref="oval:com.tuxcare.clsa:tst:1781101388001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-34.el7" test_ref="oval:com.tuxcare.clsa:tst:1781101388002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-34.el7" test_ref="oval:com.tuxcare.clsa:tst:1781101388003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-34.el7" test_ref="oval:com.tuxcare.clsa:tst:1781101388004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-34.el7" test_ref="oval:com.tuxcare.clsa:tst:1781101388005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-34.el7" test_ref="oval:com.tuxcare.clsa:tst:1781101388006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-34.el7" test_ref="oval:com.tuxcare.clsa:tst:1781101388007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1781520608" version="1">
      <metadata>
        <title>alt-python36: Fix of 2 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1781520608" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1781520608" source="CLSA"/>
        <reference ref_id="CVE-2025-15366" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" source="CVE"/>
        <reference ref_id="CVE-2025-15367" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" source="CVE"/>
        <description>- CVE-2025-15366: imaplib.IMAP4._command() concatenated each command
  argument into the wire-level command without inspecting it, so a caller
  passing user-controlled text could inject extra IMAP commands using
  CR/LF or other control characters. Reject any byte in [\x00-\x1F\x7F]
  with ValueError before concatenation (upstream gh-143921 /
  6262704b; mirrors RHSA-2026:6464 python3-3.6.8-21.el7_9.4).
- CVE-2025-15367: poplib.POP3._putcmd() encoded its argument and sent it
  to the server without inspecting it, allowing the same command
  injection via user()/pass_()/apop()/rpop()/top(). Reject any byte in
  [\x00-\x1F\x7F] with ValueError before sending (upstream gh-143923 /
  b234a2b6; mirrors RHSA-2026:6464 python3-3.6.8-21.el7_9.4).</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-06-15"/>
          <updated date="2026-06-15"/>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" impact="important" public="20260120">CVE-2025-15366</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" impact="important" public="20260120">CVE-2025-15367</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1781520608001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1781520608002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1781520608003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1781520608004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1781520608005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1781520608006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-29.el7" test_ref="oval:com.tuxcare.clsa:tst:1781520608007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1782370892" version="1">
      <metadata>
        <title>alt-python36: Fix of CVE-2026-9669</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1782370892" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1782370892" source="CLSA"/>
        <reference ref_id="CVE-2026-9669" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" source="CVE"/>
        <description>- CVE-2026-9669: the bz2 BZ2Decompressor could be reused after a libbz2
  decompression error; re-entering BZ2_bzDecompress() in that state can
  write past the end of a stack buffer (CWE-121). The decompressor now
  records the libbz2 error and refuses further decompress() calls with
  ValueError, becoming unusable after the first error (upstream gh-150599
  / 5755d0f0, adapted to 3.6: plain needs_input reset and existing
  ACQUIRE_LOCK/RELEASE_LOCK wrappers, NEWS.d fragment omitted).</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-06-25"/>
          <updated date="2026-06-25"/>
          <cve href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" impact="unknown" public="20260608">CVE-2026-9669</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1782370892001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1782370892002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1782370892003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1782370892004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1782370892005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1782370892006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-30.el7" test_ref="oval:com.tuxcare.clsa:tst:1782370892007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1782998534" version="1">
      <metadata>
        <title>alt-python27: Fix of 3 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1782998534" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1782998534" source="CLSA"/>
        <reference ref_id="CVE-2024-50602" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-50602" source="CVE"/>
        <reference ref_id="CVE-2024-11168" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-11168" source="CVE"/>
        <reference ref_id="CVE-2025-0938" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-0938" source="CVE"/>
        <description>- CVE-2024-11168: urlparse.urlsplit() did not validate the content of
  bracketed hosts, so domain names that are neither valid IPv6 nor
  IPvFuture literals were accepted inside "[" "]". A new
  _check_bracketed_host() is added (Lib/urlparse.py) and called from
  both the "http" fast-path and the generic branch of urlsplit().
  Python 2.7 has no ipaddress module, so the bracket content is
  validated with socket.inet_pton() (IPv4 in brackets is rejected;
  otherwise the content must parse as IPv6).
- CVE-2024-50602: a NULL pointer dereference in the bundled libexpat
  (Modules/expat/, 2.2.8) when XML_StopParser() was called on a parser
  in the XML_INITIALIZED state followed by XML_ResumeParser().
  XML_StopParser() now refuses to stop/suspend an unstarted parser,
  returning the new XML_ERROR_NOT_STARTED. Backport of libexpat PR
  - CVE-2025-0938: completes CVE-2024-11168 by also rejecting square
  brackets in plain domain names. _check_bracketed_netloc()
  (Lib/urlparse.py) mirrors NetlocResultMixins._hostinfo() so data
  before/after the brackets is rejected; it replaces the inline
  bracket extraction in both branches of urlsplit().</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-02"/>
          <updated date="2026-07-02"/>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-754" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-50602" impact="moderate" public="20241027">CVE-2024-50602</cve>
          <cve cvss3="6.3/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N" cwe="CWE-1287" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-11168" impact="moderate" public="20241112">CVE-2024-11168</cve>
          <cve cvss3="6.8/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-0938" impact="moderate" public="20250131">CVE-2025-0938</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-35.el7" test_ref="oval:com.tuxcare.clsa:tst:1782998534001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-35.el7" test_ref="oval:com.tuxcare.clsa:tst:1782998534002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-35.el7" test_ref="oval:com.tuxcare.clsa:tst:1782998534003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-35.el7" test_ref="oval:com.tuxcare.clsa:tst:1782998534004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-35.el7" test_ref="oval:com.tuxcare.clsa:tst:1782998534005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-35.el7" test_ref="oval:com.tuxcare.clsa:tst:1782998534006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-35.el7" test_ref="oval:com.tuxcare.clsa:tst:1782998534007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1783342568" version="1">
      <metadata>
        <title>alt-python27: Fix of 8 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1783342568" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1783342568" source="CLSA"/>
        <reference ref_id="CVE-2025-13462" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13462" source="CVE"/>
        <reference ref_id="CVE-2026-1502" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1502" source="CVE"/>
        <reference ref_id="CVE-2026-9669" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" source="CVE"/>
        <reference ref_id="CVE-2026-0865" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0865" source="CVE"/>
        <reference ref_id="CVE-2025-8291" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8291" source="CVE"/>
        <reference ref_id="CVE-2013-0340" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2013-0340" source="CVE"/>
        <reference ref_id="CVE-2025-6069" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6069" source="CVE"/>
        <reference ref_id="CVE-2026-6019" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6019" source="CVE"/>
        <description>- CVE-2013-0340: backport libexpat's billion-laughs / internal-entity-expansion
  amplification protection into the bundled expat 2.2.8 tree (Modules/expat/).
  xmlparse.c/expat.h/internal.h gain the libexpat 2.4.0 accounting machinery
  (XML_SetBillionLaughsAttackProtectionMaximumAmplification /
  ...ActivationThreshold, default 100x after 8 MiB) and a new
  XML_ERROR_AMPLIFICATION_LIMIT_BREACH; entity expansion that exceeds the
  amplification limit is now rejected instead of expanding unbounded. Adapted
  to coexist with the CloudLinux XML_SetHashSalt16Bytes extension; the system
  expat is NOT used. New public symbols are namespaced in pyexpatns.h.
- CVE-2026-0865: reject C0/DEL control characters in wsgiref.headers.Headers
  (Lib/wsgiref/headers.py); HTAB stays legal in values but not names. Backport
  of gh-143916 (GH-143917) plus the HTAB follow-up (GH-144762).
- CVE-2026-1502: reject CR/LF and other illegal characters in HTTP CONNECT
  tunnel host and request headers in HTTPConnection._tunnel()
  (Lib/httplib.py), using the existing _contains_disallowed_url_pchar_re /
  _is_legal_header_name / _is_illegal_header_value helpers. Backport of
  gh-146211 (GH-146212).
- CVE-2026-6019: base64-encode the cookie value embedded in
  Cookie.Morsel.js_output() and emit it via atob() to prevent template
  injection (Lib/Cookie.py). Backport of gh-90309 (GH-148889), on top of
  CVE-2026-3644.
- CVE-2026-9669: prevent bz2.BZ2Decompressor reuse after a decompression
  error (Modules/bz2module.c). After libbz2 reports an error the stream is
  inconsistent and re-entering it can overflow the output buffer; the
  decompressor now records the error and raises ValueError on any further
  decompress() call. Port of gh-150599 (GH-150600) to the 2.7 bz2 wrapper.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-06"/>
          <updated date="2026-07-06"/>
          <cve cvss3="3.3000000000000003/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13462" impact="low" public="20260312">CVE-2025-13462</cve>
          <cve cvss3="5.7/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1502" impact="moderate" public="20260410">CVE-2026-1502</cve>
          <cve href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" impact="unknown" public="20260608">CVE-2026-9669</cve>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-74" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0865" impact="moderate" public="20260120">CVE-2026-0865</cve>
          <cve cvss3="4.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-130" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8291" impact="moderate" public="20251007">CVE-2025-8291</cve>
          <cve cwe="CWE-611" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2013-0340" impact="unknown" public="20140121">CVE-2013-0340</cve>
          <cve cvss3="4.3/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-1333" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6069" impact="moderate" public="20250617">CVE-2025-6069</cve>
          <cve cvss3="6.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" cwe="CWE-150" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6019" impact="moderate" public="20260422">CVE-2026-6019</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-37.el7" test_ref="oval:com.tuxcare.clsa:tst:1783342568001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-37.el7" test_ref="oval:com.tuxcare.clsa:tst:1783342568002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-37.el7" test_ref="oval:com.tuxcare.clsa:tst:1783342568003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-37.el7" test_ref="oval:com.tuxcare.clsa:tst:1783342568004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-37.el7" test_ref="oval:com.tuxcare.clsa:tst:1783342568005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-37.el7" test_ref="oval:com.tuxcare.clsa:tst:1783342568006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-37.el7" test_ref="oval:com.tuxcare.clsa:tst:1783342568007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784299368" version="1">
      <metadata>
        <title>Update of alt-python38</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784299368" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784299368" source="CLSA"/>
        <reference ref_id="CVE-2025-13836" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13836" source="CVE"/>
        <reference ref_id="CVE-2026-6100" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" source="CVE"/>
        <reference ref_id="CVE-2025-4516" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4516" source="CVE"/>
        <reference ref_id="CVE-2025-8194" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8194" source="CVE"/>
        <reference ref_id="CVE-2025-4435" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4435" source="CVE"/>
        <reference ref_id="CVE-2025-15282" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15282" source="CVE"/>
        <reference ref_id="CVE-2025-13462" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13462" source="CVE"/>
        <reference ref_id="CVE-2026-1502" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1502" source="CVE"/>
        <reference ref_id="CVE-2024-12718" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-12718" source="CVE"/>
        <reference ref_id="CVE-2025-15366" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" source="CVE"/>
        <reference ref_id="CVE-2025-12084" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-12084" source="CVE"/>
        <reference ref_id="CVE-2025-15367" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" source="CVE"/>
        <reference ref_id="CVE-2026-1299" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1299" source="CVE"/>
        <reference ref_id="CVE-2025-4138" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4138" source="CVE"/>
        <reference ref_id="CVE-2026-3644" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" source="CVE"/>
        <reference ref_id="CVE-2025-13837" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13837" source="CVE"/>
        <reference ref_id="CVE-2026-4519" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" source="CVE"/>
        <reference ref_id="CVE-2025-4330" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4330" source="CVE"/>
        <reference ref_id="CVE-2024-9287" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-9287" source="CVE"/>
        <reference ref_id="CVE-2026-9669" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" source="CVE"/>
        <reference ref_id="CVE-2024-11168" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-11168" source="CVE"/>
        <reference ref_id="CVE-2026-8328" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-8328" source="CVE"/>
        <reference ref_id="CVE-2026-3446" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3446" source="CVE"/>
        <reference ref_id="CVE-2026-0865" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0865" source="CVE"/>
        <reference ref_id="CVE-2025-4517" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4517" source="CVE"/>
        <reference ref_id="CVE-2026-4224" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" source="CVE"/>
        <reference ref_id="CVE-2026-0672" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0672" source="CVE"/>
        <reference ref_id="CVE-2025-8291" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8291" source="CVE"/>
        <reference ref_id="CVE-2025-6069" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6069" source="CVE"/>
        <reference ref_id="CVE-2025-1795" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-1795" source="CVE"/>
        <reference ref_id="CVE-2025-0938" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-0938" source="CVE"/>
        <reference ref_id="CVE-2026-6019" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6019" source="CVE"/>
        <reference ref_id="CVE-2025-6075" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6075" source="CVE"/>
        <reference ref_id="CVE-2026-7210" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" source="CVE"/>
        <reference ref_id="CVE-2025-11468" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-11468" source="CVE"/>
        <description>- ELS-2237: apply 06004 (skip test_simple_xml_chunk_1/_5) on el7 too, not
  just rhel &gt;= 8. el7's expat now carries the 2.6 reparse-deferral backport
  while still reporting an older version, so those version-gated tests fail
  in %check as they already did on el8/el9.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-17"/>
          <updated date="2026-07-17"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13836" impact="important" public="20251201">CVE-2025-13836</cve>
          <cve cvss3="9.1/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-825" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" impact="critical" public="20260413">CVE-2026-6100</cve>
          <cve cvss3="5.9/CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-416" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4516" impact="moderate" public="20250515">CVE-2025-4516</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-835" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8194" impact="important" public="20250728">CVE-2025-8194</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-706" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4435" impact="important" public="20250603">CVE-2025-4435</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15282" impact="moderate" public="20260120">CVE-2025-15282</cve>
          <cve cvss3="3.3000000000000003/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13462" impact="low" public="20260312">CVE-2025-13462</cve>
          <cve cvss3="5.7/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1502" impact="moderate" public="20260410">CVE-2026-1502</cve>
          <cve cvss3="7.6000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L" cwe="CWE-22" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-12718" impact="important" public="20250603">CVE-2024-12718</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" impact="important" public="20260120">CVE-2025-15366</cve>
          <cve cvss3="6.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-407" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-12084" impact="moderate" public="20251203">CVE-2025-12084</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" impact="important" public="20260120">CVE-2025-15367</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1299" impact="important" public="20260123">CVE-2026-1299</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N" cwe="CWE-22" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4138" impact="important" public="20250603">CVE-2025-4138</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" impact="important" public="20260316">CVE-2026-3644</cve>
          <cve cvss3="5.5/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13837" impact="moderate" public="20251201">CVE-2025-13837</cve>
          <cve cvss3="7.0/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" impact="important" public="20260320">CVE-2026-4519</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:N" cwe="CWE-22" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4330" impact="important" public="20250603">CVE-2025-4330</cve>
          <cve cvss3="7.8/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-428" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-9287" impact="important" public="20241022">CVE-2024-9287</cve>
          <cve href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" impact="unknown" public="20260608">CVE-2026-9669</cve>
          <cve cvss3="6.3/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N" cwe="CWE-1287" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-11168" impact="moderate" public="20241112">CVE-2024-11168</cve>
          <cve href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-8328" impact="unknown" public="20260513">CVE-2026-8328</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-1286" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3446" impact="moderate" public="20260410">CVE-2026-3446</cve>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-74" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0865" impact="moderate" public="20260120">CVE-2026-0865</cve>
          <cve cvss3="9.4/CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:L" cwe="CWE-22" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-4517" impact="critical" public="20250603">CVE-2025-4517</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-674" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" impact="important" public="20260316">CVE-2026-4224</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0672" impact="moderate" public="20260120">CVE-2026-0672</cve>
          <cve cvss3="4.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-130" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8291" impact="moderate" public="20251007">CVE-2025-8291</cve>
          <cve cvss3="4.3/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-1333" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6069" impact="moderate" public="20250617">CVE-2025-6069</cve>
          <cve cvss3="3.1/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N" cwe="CWE-168" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-1795" impact="low" public="20250228">CVE-2025-1795</cve>
          <cve cvss3="6.8/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:H/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-0938" impact="moderate" public="20250131">CVE-2025-0938</cve>
          <cve cvss3="6.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" cwe="CWE-150" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6019" impact="moderate" public="20260422">CVE-2026-6019</cve>
          <cve cvss3="5.5/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6075" impact="moderate" public="20251031">CVE-2025-6075</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-331" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" impact="important" public="20260511">CVE-2026-7210</cve>
          <cve cvss3="5.7/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-140" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-11468" impact="moderate" public="20260120">CVE-2025-11468</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python38 is earlier than 0:3.8.20-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784299368001"/>
        <criterion comment="alt-python38 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368002"/>
        <criterion comment="alt-python38-debug is earlier than 0:3.8.20-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784299368003"/>
        <criterion comment="alt-python38-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368004"/>
        <criterion comment="alt-python38-devel is earlier than 0:3.8.20-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784299368005"/>
        <criterion comment="alt-python38-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368006"/>
        <criterion comment="alt-python38-idle is earlier than 0:3.8.20-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784299368007"/>
        <criterion comment="alt-python38-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368008"/>
        <criterion comment="alt-python38-libs is earlier than 0:3.8.20-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784299368009"/>
        <criterion comment="alt-python38-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368010"/>
        <criterion comment="alt-python38-test is earlier than 0:3.8.20-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784299368011"/>
        <criterion comment="alt-python38-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368012"/>
        <criterion comment="alt-python38-tkinter is earlier than 0:3.8.20-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784299368013"/>
        <criterion comment="alt-python38-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784291554" version="1">
      <metadata>
        <title>alt-python39: Fix of 24 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784291554" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784291554" source="CLSA"/>
        <reference ref_id="CVE-2026-6100" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" source="CVE"/>
        <reference ref_id="CVE-2025-8194" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8194" source="CVE"/>
        <reference ref_id="CVE-2025-15282" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15282" source="CVE"/>
        <reference ref_id="CVE-2025-13462" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13462" source="CVE"/>
        <reference ref_id="CVE-2026-1502" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1502" source="CVE"/>
        <reference ref_id="CVE-2025-15366" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" source="CVE"/>
        <reference ref_id="CVE-2025-12084" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-12084" source="CVE"/>
        <reference ref_id="CVE-2025-15367" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" source="CVE"/>
        <reference ref_id="CVE-2026-1299" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1299" source="CVE"/>
        <reference ref_id="CVE-2026-3644" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" source="CVE"/>
        <reference ref_id="CVE-2025-13837" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13837" source="CVE"/>
        <reference ref_id="CVE-2026-4519" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" source="CVE"/>
        <reference ref_id="CVE-2026-9669" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" source="CVE"/>
        <reference ref_id="CVE-2026-3446" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3446" source="CVE"/>
        <reference ref_id="CVE-2026-0865" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0865" source="CVE"/>
        <reference ref_id="CVE-2026-4224" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" source="CVE"/>
        <reference ref_id="CVE-2026-0672" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0672" source="CVE"/>
        <reference ref_id="CVE-2025-8291" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8291" source="CVE"/>
        <reference ref_id="CVE-2025-6069" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6069" source="CVE"/>
        <reference ref_id="CVE-2025-1795" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-1795" source="CVE"/>
        <reference ref_id="CVE-2026-6019" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6019" source="CVE"/>
        <reference ref_id="CVE-2025-6075" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6075" source="CVE"/>
        <reference ref_id="CVE-2026-7210" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" source="CVE"/>
        <reference ref_id="CVE-2025-11468" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-11468" source="CVE"/>
        <description>- CVE-2026-9669: bz2.BZ2Decompressor records the libbz2 error code after a
  decompression failure and refuses any subsequent decompress() call with
  ValueError, instead of re-entering BZ2_bzDecompress() on an inconsistent
  bz_stream which could cause a stack buffer overflow (CWE-121).</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-17"/>
          <updated date="2026-07-17"/>
          <cve cvss3="9.1/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-825" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" impact="critical" public="20260413">CVE-2026-6100</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-835" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8194" impact="important" public="20250728">CVE-2025-8194</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15282" impact="moderate" public="20260120">CVE-2025-15282</cve>
          <cve cvss3="3.3000000000000003/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13462" impact="low" public="20260312">CVE-2025-13462</cve>
          <cve cvss3="5.7/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1502" impact="moderate" public="20260410">CVE-2026-1502</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" impact="important" public="20260120">CVE-2025-15366</cve>
          <cve cvss3="6.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-407" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-12084" impact="moderate" public="20251203">CVE-2025-12084</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" impact="important" public="20260120">CVE-2025-15367</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-1299" impact="important" public="20260123">CVE-2026-1299</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" impact="important" public="20260316">CVE-2026-3644</cve>
          <cve cvss3="5.5/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-13837" impact="moderate" public="20251201">CVE-2025-13837</cve>
          <cve cvss3="7.0/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" impact="important" public="20260320">CVE-2026-4519</cve>
          <cve href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" impact="unknown" public="20260608">CVE-2026-9669</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-1286" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3446" impact="moderate" public="20260410">CVE-2026-3446</cve>
          <cve cvss3="5.9/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-74" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0865" impact="moderate" public="20260120">CVE-2026-0865</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-674" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" impact="important" public="20260316">CVE-2026-4224</cve>
          <cve cvss3="6.0/CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-93" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-0672" impact="moderate" public="20260120">CVE-2026-0672</cve>
          <cve cvss3="4.3/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-130" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-8291" impact="moderate" public="20251007">CVE-2025-8291</cve>
          <cve cvss3="4.3/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L" cwe="CWE-1333" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6069" impact="moderate" public="20250617">CVE-2025-6069</cve>
          <cve cvss3="3.1/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N" cwe="CWE-168" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-1795" impact="low" public="20250228">CVE-2025-1795</cve>
          <cve cvss3="6.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N" cwe="CWE-150" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6019" impact="moderate" public="20260422">CVE-2026-6019</cve>
          <cve cvss3="5.5/CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-6075" impact="moderate" public="20251031">CVE-2025-6075</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-331" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" impact="important" public="20260511">CVE-2026-7210</cve>
          <cve cvss3="5.7/CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:N/I:H/A:N" cwe="CWE-140" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-11468" impact="moderate" public="20260120">CVE-2025-11468</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python39 is earlier than 0:3.9.23-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1784291554001"/>
        <criterion comment="alt-python39 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554002"/>
        <criterion comment="alt-python39-debug is earlier than 0:3.9.23-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1784291554003"/>
        <criterion comment="alt-python39-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554004"/>
        <criterion comment="alt-python39-devel is earlier than 0:3.9.23-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1784291554005"/>
        <criterion comment="alt-python39-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554006"/>
        <criterion comment="alt-python39-idle is earlier than 0:3.9.23-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1784291554007"/>
        <criterion comment="alt-python39-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554008"/>
        <criterion comment="alt-python39-libs is earlier than 0:3.9.23-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1784291554009"/>
        <criterion comment="alt-python39-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554010"/>
        <criterion comment="alt-python39-test is earlier than 0:3.9.23-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1784291554011"/>
        <criterion comment="alt-python39-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554012"/>
        <criterion comment="alt-python39-tkinter is earlier than 0:3.9.23-17.el7" test_ref="oval:com.tuxcare.clsa:tst:1784291554013"/>
        <criterion comment="alt-python39-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784307767" version="1">
      <metadata>
        <title>alt-python310: Fix of CVE-2024-6923</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784307767" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784307767" source="CLSA"/>
        <reference ref_id="CVE-2024-6923" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-6923" source="CVE"/>
        <description>- ALTPYTH-592: Update to 3.10.20 version</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-17"/>
          <updated date="2026-07-17"/>
          <cve cvss3="6.8/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-6923" impact="moderate" public="20240801">CVE-2024-6923</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python310 is earlier than 0:3.10.20-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784307767001"/>
        <criterion comment="alt-python310 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767002"/>
        <criterion comment="alt-python310-debug is earlier than 0:3.10.20-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784307767003"/>
        <criterion comment="alt-python310-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767004"/>
        <criterion comment="alt-python310-devel is earlier than 0:3.10.20-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784307767005"/>
        <criterion comment="alt-python310-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767006"/>
        <criterion comment="alt-python310-idle is earlier than 0:3.10.20-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784307767007"/>
        <criterion comment="alt-python310-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767008"/>
        <criterion comment="alt-python310-libs is earlier than 0:3.10.20-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784307767009"/>
        <criterion comment="alt-python310-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767010"/>
        <criterion comment="alt-python310-test is earlier than 0:3.10.20-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784307767011"/>
        <criterion comment="alt-python310-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767012"/>
        <criterion comment="alt-python310-tkinter is earlier than 0:3.10.20-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784307767013"/>
        <criterion comment="alt-python310-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784309526" version="1">
      <metadata>
        <title>alt-python311: Fix of CVE-2024-6923</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784309526" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784309526" source="CLSA"/>
        <reference ref_id="CVE-2024-6923" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-6923" source="CVE"/>
        <description>- ALTPYTH-591: Update to 3.11.15 version</description>
        <advisory from="packager@tuxcare.com">
          <severity>Moderate</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-17"/>
          <updated date="2026-07-17"/>
          <cve cvss3="6.8/CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-6923" impact="moderate" public="20240801">CVE-2024-6923</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python311 is earlier than 0:3.11.15-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784309526001"/>
        <criterion comment="alt-python311 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526002"/>
        <criterion comment="alt-python311-debug is earlier than 0:3.11.15-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784309526003"/>
        <criterion comment="alt-python311-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526004"/>
        <criterion comment="alt-python311-devel is earlier than 0:3.11.15-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784309526005"/>
        <criterion comment="alt-python311-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526006"/>
        <criterion comment="alt-python311-idle is earlier than 0:3.11.15-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784309526007"/>
        <criterion comment="alt-python311-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526008"/>
        <criterion comment="alt-python311-libs is earlier than 0:3.11.15-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784309526009"/>
        <criterion comment="alt-python311-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526010"/>
        <criterion comment="alt-python311-test is earlier than 0:3.11.15-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784309526011"/>
        <criterion comment="alt-python311-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526012"/>
        <criterion comment="alt-python311-tkinter is earlier than 0:3.11.15-1.el7" test_ref="oval:com.tuxcare.clsa:tst:1784309526013"/>
        <criterion comment="alt-python311-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784533840" version="1">
      <metadata>
        <title>alt-python38-setuptools: Fix of 3 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784533840" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784533840" source="CLSA"/>
        <reference ref_id="CVE-2025-47273" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-47273" source="CVE"/>
        <reference ref_id="CVE-2022-40897" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2022-40897" source="CVE"/>
        <reference ref_id="CVE-2024-6345" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-6345" source="CVE"/>
        <description>- CVE-2022-40897: regex denial of service via crafted HTML in package_index
- CVE-2024-6345: remote code execution via command injection in VCS download functions
- CVE-2025-47273: path traversal in PackageIndex download filename resolution</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-20"/>
          <updated date="2026-07-20"/>
          <cve cvss3="8.8/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-22" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-47273" impact="important" public="20250517">CVE-2025-47273</cve>
          <cve cvss3="0.0/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-1333" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2022-40897" impact="unknown" public="20221223">CVE-2022-40897</cve>
          <cve cvss3="8.8/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H" cwe="CWE-94" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2024-6345" impact="important" public="20240715">CVE-2024-6345</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python38-setuptools is earlier than 0:58.3.0-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784533840001"/>
        <criterion comment="alt-python38-setuptools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784533840002"/>
        <criterion comment="alt-python38-setuptools-wheel is earlier than 0:58.3.0-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784533840003"/>
        <criterion comment="alt-python38-setuptools-wheel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784533840004"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784799539" version="1">
      <metadata>
        <title>alt-python27: Fix of CVE-2026-15308</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784799539" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784799539" source="CLSA"/>
        <reference ref_id="CVE-2026-15308" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" source="CVE"/>
        <description>- CVE-2026-15308: fix quadratic-complexity CPU denial-of-service in incremental
  HTML parsing (Lib/HTMLParser.py). feed() previously concatenated new data onto
  the unparsed buffer and re-scanned it from the start on every call, so feeding
  an unterminated construct in many small chunks was quadratic. New data is now
  accumulated in a list and only joined and parsed once enough has piled up, with
  close() flushing the pending buffer. Port of gh-153030 (GH-153031).</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-23"/>
          <updated date="2026-07-23"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" impact="important" public="20260709">CVE-2026-15308</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python27 is earlier than 0:2.7.18-38.el7" test_ref="oval:com.tuxcare.clsa:tst:1784799539001"/>
        <criterion comment="alt-python27 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481002"/>
        <criterion comment="alt-python27-debug is earlier than 0:2.7.18-38.el7" test_ref="oval:com.tuxcare.clsa:tst:1784799539002"/>
        <criterion comment="alt-python27-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481004"/>
        <criterion comment="alt-python27-devel is earlier than 0:2.7.18-38.el7" test_ref="oval:com.tuxcare.clsa:tst:1784799539003"/>
        <criterion comment="alt-python27-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481006"/>
        <criterion comment="alt-python27-libs is earlier than 0:2.7.18-38.el7" test_ref="oval:com.tuxcare.clsa:tst:1784799539004"/>
        <criterion comment="alt-python27-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481008"/>
        <criterion comment="alt-python27-test is earlier than 0:2.7.18-38.el7" test_ref="oval:com.tuxcare.clsa:tst:1784799539005"/>
        <criterion comment="alt-python27-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481010"/>
        <criterion comment="alt-python27-tkinter is earlier than 0:2.7.18-38.el7" test_ref="oval:com.tuxcare.clsa:tst:1784799539006"/>
        <criterion comment="alt-python27-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481012"/>
        <criterion comment="alt-python27-tools is earlier than 0:2.7.18-38.el7" test_ref="oval:com.tuxcare.clsa:tst:1784799539007"/>
        <criterion comment="alt-python27-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1753804481014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784802977" version="1">
      <metadata>
        <title>alt-python310: Fix of 5 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784802977" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784802977" source="CLSA"/>
        <reference ref_id="CVE-2025-15366" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" source="CVE"/>
        <reference ref_id="CVE-2025-15367" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" source="CVE"/>
        <reference ref_id="CVE-2026-3644" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" source="CVE"/>
        <reference ref_id="CVE-2026-4519" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" source="CVE"/>
        <reference ref_id="CVE-2026-4224" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" source="CVE"/>
        <description>- CVE-2025-15366: reject control characters in imaplib IMAP4 commands
- CVE-2025-15367: reject control characters in poplib POP3 commands
- CVE-2026-3644: reject control characters in http.cookies Morsel.update(), |=, unpickling and js_output
- CVE-2026-4224: add recursion guard to pyexpat conv_content_model() to prevent C stack overflow
- CVE-2026-4519: reject webbrowser URLs with a leading dash to prevent argument injection</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-23"/>
          <updated date="2026-07-23"/>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" impact="important" public="20260120">CVE-2025-15366</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" impact="important" public="20260120">CVE-2025-15367</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" impact="important" public="20260316">CVE-2026-3644</cve>
          <cve cvss3="7.0/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" impact="important" public="20260320">CVE-2026-4519</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-674" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" impact="important" public="20260316">CVE-2026-4224</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python310 is earlier than 0:3.10.20-2.el7" test_ref="oval:com.tuxcare.clsa:tst:1784802977001"/>
        <criterion comment="alt-python310 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767002"/>
        <criterion comment="alt-python310-debug is earlier than 0:3.10.20-2.el7" test_ref="oval:com.tuxcare.clsa:tst:1784802977002"/>
        <criterion comment="alt-python310-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767004"/>
        <criterion comment="alt-python310-devel is earlier than 0:3.10.20-2.el7" test_ref="oval:com.tuxcare.clsa:tst:1784802977003"/>
        <criterion comment="alt-python310-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767006"/>
        <criterion comment="alt-python310-idle is earlier than 0:3.10.20-2.el7" test_ref="oval:com.tuxcare.clsa:tst:1784802977004"/>
        <criterion comment="alt-python310-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767008"/>
        <criterion comment="alt-python310-libs is earlier than 0:3.10.20-2.el7" test_ref="oval:com.tuxcare.clsa:tst:1784802977005"/>
        <criterion comment="alt-python310-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767010"/>
        <criterion comment="alt-python310-test is earlier than 0:3.10.20-2.el7" test_ref="oval:com.tuxcare.clsa:tst:1784802977006"/>
        <criterion comment="alt-python310-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767012"/>
        <criterion comment="alt-python310-tkinter is earlier than 0:3.10.20-2.el7" test_ref="oval:com.tuxcare.clsa:tst:1784802977007"/>
        <criterion comment="alt-python310-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784804986" version="1">
      <metadata>
        <title>alt-python39: Fix of CVE-2026-15308</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784804986" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784804986" source="CLSA"/>
        <reference ref_id="CVE-2026-15308" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" source="CVE"/>
        <description>- el10: build _decimal against system libmpdec (BuildRequires mpdecimal-devel,
  configure --with-system-libmpdec, patch setup.py to link -lmpdec since el10
  ships libmpdec.so.3 not .so.2, and _decimal.c uchar-&gt;unsigned char for the
  mpdecimal 2.5 api); the bundled libmpdec fails to compile with -Og under the
  el10 gcc, which broke the CL10 build
- el10: apply 06003 (BIO_eof ASN1 EOF, CPython gh-100372) so test_ssl
  cadata tests pass with OpenSSL 3.5.x, matching the alpine build (ALTPYTH-611)</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-23"/>
          <updated date="2026-07-23"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" impact="important" public="20260709">CVE-2026-15308</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python39 is earlier than 0:3.9.23-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784804986001"/>
        <criterion comment="alt-python39 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554002"/>
        <criterion comment="alt-python39-debug is earlier than 0:3.9.23-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784804986002"/>
        <criterion comment="alt-python39-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554004"/>
        <criterion comment="alt-python39-devel is earlier than 0:3.9.23-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784804986003"/>
        <criterion comment="alt-python39-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554006"/>
        <criterion comment="alt-python39-idle is earlier than 0:3.9.23-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784804986004"/>
        <criterion comment="alt-python39-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554008"/>
        <criterion comment="alt-python39-libs is earlier than 0:3.9.23-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784804986005"/>
        <criterion comment="alt-python39-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554010"/>
        <criterion comment="alt-python39-test is earlier than 0:3.9.23-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784804986006"/>
        <criterion comment="alt-python39-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554012"/>
        <criterion comment="alt-python39-tkinter is earlier than 0:3.9.23-19.el7" test_ref="oval:com.tuxcare.clsa:tst:1784804986007"/>
        <criterion comment="alt-python39-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784291554014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784808690" version="1">
      <metadata>
        <title>alt-python38: Fix of CVE-2026-15308</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784808690" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784808690" source="CLSA"/>
        <reference ref_id="CVE-2026-15308" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" source="CVE"/>
        <description>- CVE-2026-15308: html.parser.HTMLParser incremental parsing was quadratic
  when an unterminated construct (tag or comment) spanned many feed() calls,
  because the growing buffer was rescanned and concatenated on every call --
  a CPU denial-of-service on attacker-controlled input. New data is now
  accumulated in a list and only joined and parsed once enough has piled up;
  close() flushes any buffered data before the final parse.</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-23"/>
          <updated date="2026-07-23"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" impact="important" public="20260709">CVE-2026-15308</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python38 is earlier than 0:3.8.20-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1784808690001"/>
        <criterion comment="alt-python38 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368002"/>
        <criterion comment="alt-python38-debug is earlier than 0:3.8.20-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1784808690002"/>
        <criterion comment="alt-python38-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368004"/>
        <criterion comment="alt-python38-devel is earlier than 0:3.8.20-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1784808690003"/>
        <criterion comment="alt-python38-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368006"/>
        <criterion comment="alt-python38-idle is earlier than 0:3.8.20-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1784808690004"/>
        <criterion comment="alt-python38-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368008"/>
        <criterion comment="alt-python38-libs is earlier than 0:3.8.20-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1784808690005"/>
        <criterion comment="alt-python38-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368010"/>
        <criterion comment="alt-python38-test is earlier than 0:3.8.20-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1784808690006"/>
        <criterion comment="alt-python38-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368012"/>
        <criterion comment="alt-python38-tkinter is earlier than 0:3.8.20-20.el7" test_ref="oval:com.tuxcare.clsa:tst:1784808690007"/>
        <criterion comment="alt-python38-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784299368014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784824602" version="1">
      <metadata>
        <title>alt-python36: Fix of CVE-2026-15308</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784824602" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784824602" source="CLSA"/>
        <reference ref_id="CVE-2026-15308" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" source="CVE"/>
        <description>- CVE-2026-15308: html.parser.HTMLParser had quadratic complexity when an
  unterminated construct (tag, comment, declaration) was fed across many
  feed() calls, since each call rescanned the growing buffer and
  reconcatenated onto it, allowing a CPU denial-of-service on uncontrolled
  data. feed() now accumulates new data in a list and only joins and parses
  it once enough has piled up, flushing the buffer in close() (upstream
  gh-153030 / bcf98ddb, adapted to 3.6: identical feed()/close()/reset()
  logic, test added with "from test import support", NEWS.d fragment omitted).</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-23"/>
          <updated date="2026-07-23"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" impact="important" public="20260709">CVE-2026-15308</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python36 is earlier than 0:3.6.15-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1784824602001"/>
        <criterion comment="alt-python36 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001002"/>
        <criterion comment="alt-python36-debug is earlier than 0:3.6.15-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1784824602002"/>
        <criterion comment="alt-python36-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001004"/>
        <criterion comment="alt-python36-devel is earlier than 0:3.6.15-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1784824602003"/>
        <criterion comment="alt-python36-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001006"/>
        <criterion comment="alt-python36-libs is earlier than 0:3.6.15-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1784824602004"/>
        <criterion comment="alt-python36-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001008"/>
        <criterion comment="alt-python36-test is earlier than 0:3.6.15-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1784824602005"/>
        <criterion comment="alt-python36-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001010"/>
        <criterion comment="alt-python36-tkinter is earlier than 0:3.6.15-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1784824602006"/>
        <criterion comment="alt-python36-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001012"/>
        <criterion comment="alt-python36-tools is earlier than 0:3.6.15-31.el7" test_ref="oval:com.tuxcare.clsa:tst:1784824602007"/>
        <criterion comment="alt-python36-tools isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1748350001014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784818766" version="1">
      <metadata>
        <title>alt-python311: Fix of 9 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784818766" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784818766" source="CLSA"/>
        <reference ref_id="CVE-2026-6100" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" source="CVE"/>
        <reference ref_id="CVE-2025-15366" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" source="CVE"/>
        <reference ref_id="CVE-2025-15367" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" source="CVE"/>
        <reference ref_id="CVE-2026-3644" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" source="CVE"/>
        <reference ref_id="CVE-2026-4519" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" source="CVE"/>
        <reference ref_id="CVE-2026-9669" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" source="CVE"/>
        <reference ref_id="CVE-2026-4786" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4786" source="CVE"/>
        <reference ref_id="CVE-2026-4224" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" source="CVE"/>
        <reference ref_id="CVE-2026-7210" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" source="CVE"/>
        <description>- CVE-2026-4786: reject action-token-expanded dash-prefixed args in webbrowser.open() (CVE-2026-4519 bypass)
- CVE-2026-6100: fix dangling next_in pointer (UAF) in bz2/lzma decompressors after MemoryError on reuse
- CVE-2026-7210: use XML_SetHashSalt16Bytes 16-byte entropy for Expat hash-flooding protection when available
- CVE-2026-41080: backport libexpat XML_SetHashSalt16Bytes into the bundled expat (ubuntu16.04 / el7; other platforms link system expat) so the CVE-2026-7210 16-byte salt path is not inert
- CVE-2026-9669: prevent bz2.BZ2Decompressor reuse after a decompression error (stack buffer overflow)</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-23"/>
          <updated date="2026-07-23"/>
          <cve cvss3="9.1/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-825" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" impact="critical" public="20260413">CVE-2026-6100</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15366" impact="important" public="20260120">CVE-2025-15366</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:N" cwe="CWE-77" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2025-15367" impact="important" public="20260120">CVE-2025-15367</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-3644" impact="important" public="20260316">CVE-2026-3644</cve>
          <cve cvss3="7.0/CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N" cwe="CWE-20" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4519" impact="important" public="20260320">CVE-2026-4519</cve>
          <cve href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" impact="unknown" public="20260608">CVE-2026-9669</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L" cwe="CWE-88" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4786" impact="important" public="20260413">CVE-2026-4786</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-674" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4224" impact="important" public="20260316">CVE-2026-4224</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-331" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" impact="important" public="20260511">CVE-2026-7210</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python311 is earlier than 0:3.11.15-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784818766001"/>
        <criterion comment="alt-python311 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526002"/>
        <criterion comment="alt-python311-debug is earlier than 0:3.11.15-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784818766002"/>
        <criterion comment="alt-python311-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526004"/>
        <criterion comment="alt-python311-devel is earlier than 0:3.11.15-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784818766003"/>
        <criterion comment="alt-python311-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526006"/>
        <criterion comment="alt-python311-idle is earlier than 0:3.11.15-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784818766004"/>
        <criterion comment="alt-python311-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526008"/>
        <criterion comment="alt-python311-libs is earlier than 0:3.11.15-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784818766005"/>
        <criterion comment="alt-python311-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526010"/>
        <criterion comment="alt-python311-test is earlier than 0:3.11.15-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784818766006"/>
        <criterion comment="alt-python311-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526012"/>
        <criterion comment="alt-python311-tkinter is earlier than 0:3.11.15-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784818766007"/>
        <criterion comment="alt-python311-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784309526014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784881258" version="1">
      <metadata>
        <title>alt-python310: Fix of 4 CVEs</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784881258" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784881258" source="CLSA"/>
        <reference ref_id="CVE-2026-6100" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" source="CVE"/>
        <reference ref_id="CVE-2026-9669" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" source="CVE"/>
        <reference ref_id="CVE-2026-4786" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4786" source="CVE"/>
        <reference ref_id="CVE-2026-7210" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" source="CVE"/>
        <description>- CVE-2026-4786: fix action-substitution bypass of the CVE-2026-4519 webbrowser dash-prefix check
- CVE-2026-6100: clear decompressor next_in on the error path in bz2/lzma to prevent use-after-free
- CVE-2026-7210: use XML_SetHashSalt16Bytes for 16-byte Expat hash-flooding entropy
- CVE-2026-41080: backport libexpat XML_SetHashSalt16Bytes into the bundled expat (Debian/Ubuntu, el7) so the CVE-2026-7210 16-byte salt path is not inert
- CVE-2026-9669: refuse bz2 decompressor reuse after a previous error to prevent stack buffer overflow</description>
        <advisory from="packager@tuxcare.com">
          <severity>Critical</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-24"/>
          <updated date="2026-07-24"/>
          <cve cvss3="9.1/CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H" cwe="CWE-825" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-6100" impact="critical" public="20260413">CVE-2026-6100</cve>
          <cve href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-9669" impact="unknown" public="20260608">CVE-2026-9669</cve>
          <cve cvss3="7.1000000000000005/CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L" cwe="CWE-88" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-4786" impact="important" public="20260413">CVE-2026-4786</cve>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-331" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-7210" impact="important" public="20260511">CVE-2026-7210</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python310 is earlier than 0:3.10.20-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784881258001"/>
        <criterion comment="alt-python310 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767002"/>
        <criterion comment="alt-python310-debug is earlier than 0:3.10.20-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784881258002"/>
        <criterion comment="alt-python310-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767004"/>
        <criterion comment="alt-python310-devel is earlier than 0:3.10.20-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784881258003"/>
        <criterion comment="alt-python310-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767006"/>
        <criterion comment="alt-python310-idle is earlier than 0:3.10.20-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784881258004"/>
        <criterion comment="alt-python310-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767008"/>
        <criterion comment="alt-python310-libs is earlier than 0:3.10.20-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784881258005"/>
        <criterion comment="alt-python310-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767010"/>
        <criterion comment="alt-python310-test is earlier than 0:3.10.20-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784881258006"/>
        <criterion comment="alt-python310-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767012"/>
        <criterion comment="alt-python310-tkinter is earlier than 0:3.10.20-3.el7" test_ref="oval:com.tuxcare.clsa:tst:1784881258007"/>
        <criterion comment="alt-python310-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767014"/>
      </criteria>
    </definition>
    <definition class="patch" id="oval:com.tuxcare.clsa:def:1784899083" version="1">
      <metadata>
        <title>alt-python310: Fix of CVE-2026-15308</title>
        <affected family="unix">
          <platform>Community Enterprise Operating System 7</platform>
        </affected>
        <reference ref_id="CLSA-2026:1784899083" ref_url="https://cve.tuxcare.com/els-alt-python/releases/CLSA-2026:1784899083" source="CLSA"/>
        <reference ref_id="CVE-2026-15308" ref_url="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" source="CVE"/>
        <description>- CVE-2026-15308: fix quadratic-complexity CPU DoS in html.parser.HTMLParser incremental parsing of long unterminated constructs</description>
        <advisory from="packager@tuxcare.com">
          <severity>Important</severity>
          <rights>TuxCare License Agreement</rights>
          <issued date="2026-07-24"/>
          <updated date="2026-07-24"/>
          <cve cvss3="7.5/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" cwe="CWE-400" href="https://cve.tuxcare.com/els-alt-python/cve/CVE-2026-15308" impact="important" public="20260709">CVE-2026-15308</cve>
          <affected_cpe_list>
            <cpe>cpe:/o:centos:centos:7</cpe>
          </affected_cpe_list>
        </advisory>
      </metadata>
      <criteria operator="OR">
        <criterion comment="alt-python310 is earlier than 0:3.10.20-4.el7" test_ref="oval:com.tuxcare.clsa:tst:1784899083001"/>
        <criterion comment="alt-python310 isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767002"/>
        <criterion comment="alt-python310-debug is earlier than 0:3.10.20-4.el7" test_ref="oval:com.tuxcare.clsa:tst:1784899083002"/>
        <criterion comment="alt-python310-debug isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767004"/>
        <criterion comment="alt-python310-devel is earlier than 0:3.10.20-4.el7" test_ref="oval:com.tuxcare.clsa:tst:1784899083003"/>
        <criterion comment="alt-python310-devel isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767006"/>
        <criterion comment="alt-python310-idle is earlier than 0:3.10.20-4.el7" test_ref="oval:com.tuxcare.clsa:tst:1784899083004"/>
        <criterion comment="alt-python310-idle isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767008"/>
        <criterion comment="alt-python310-libs is earlier than 0:3.10.20-4.el7" test_ref="oval:com.tuxcare.clsa:tst:1784899083005"/>
        <criterion comment="alt-python310-libs isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767010"/>
        <criterion comment="alt-python310-test is earlier than 0:3.10.20-4.el7" test_ref="oval:com.tuxcare.clsa:tst:1784899083006"/>
        <criterion comment="alt-python310-test isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767012"/>
        <criterion comment="alt-python310-tkinter is earlier than 0:3.10.20-4.el7" test_ref="oval:com.tuxcare.clsa:tst:1784899083007"/>
        <criterion comment="alt-python310-tkinter isn't signed with TuxCare key" test_ref="oval:com.tuxcare.clsa:tst:1784307767014"/>
      </criteria>
    </definition>
  </definitions>
  <tests>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-6.el7" id="oval:com.tuxcare.clsa:tst:1748350001001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python36 isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1748350001002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-6.el7" id="oval:com.tuxcare.clsa:tst:1748350001003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python36-debug isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1748350001004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-6.el7" id="oval:com.tuxcare.clsa:tst:1748350001005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python36-devel isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1748350001006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-6.el7" id="oval:com.tuxcare.clsa:tst:1748350001007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python36-libs isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1748350001008" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-6.el7" id="oval:com.tuxcare.clsa:tst:1748350001009" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python36-test isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1748350001010" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-6.el7" id="oval:com.tuxcare.clsa:tst:1748350001011" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python36-tkinter isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1748350001012" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-6.el7" id="oval:com.tuxcare.clsa:tst:1748350001013" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python36-tools isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1748350001014" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-7.el7" id="oval:com.tuxcare.clsa:tst:1749037497001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1749037497001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-7.el7" id="oval:com.tuxcare.clsa:tst:1749037497002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1749037497001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-7.el7" id="oval:com.tuxcare.clsa:tst:1749037497003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1749037497001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-7.el7" id="oval:com.tuxcare.clsa:tst:1749037497004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1749037497001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-7.el7" id="oval:com.tuxcare.clsa:tst:1749037497005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1749037497001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-7.el7" id="oval:com.tuxcare.clsa:tst:1749037497006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1749037497001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-7.el7" id="oval:com.tuxcare.clsa:tst:1749037497007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1749037497001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-8.el7" id="oval:com.tuxcare.clsa:tst:1753205772001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753205772001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-8.el7" id="oval:com.tuxcare.clsa:tst:1753205772002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753205772001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-8.el7" id="oval:com.tuxcare.clsa:tst:1753205772003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753205772001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-8.el7" id="oval:com.tuxcare.clsa:tst:1753205772004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753205772001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-8.el7" id="oval:com.tuxcare.clsa:tst:1753205772005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753205772001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-8.el7" id="oval:com.tuxcare.clsa:tst:1753205772006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753205772001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-8.el7" id="oval:com.tuxcare.clsa:tst:1753205772007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753205772001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-14.el7" id="oval:com.tuxcare.clsa:tst:1753804481001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753804481001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python27 isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1753804481002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-14.el7" id="oval:com.tuxcare.clsa:tst:1753804481003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753804481001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python27-debug isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1753804481004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-14.el7" id="oval:com.tuxcare.clsa:tst:1753804481005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753804481001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python27-devel isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1753804481006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-14.el7" id="oval:com.tuxcare.clsa:tst:1753804481007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753804481001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python27-libs isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1753804481008" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-14.el7" id="oval:com.tuxcare.clsa:tst:1753804481009" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753804481001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python27-test isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1753804481010" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-14.el7" id="oval:com.tuxcare.clsa:tst:1753804481011" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753804481001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python27-tkinter isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1753804481012" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-14.el7" id="oval:com.tuxcare.clsa:tst:1753804481013" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1753804481001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python27-tools isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1753804481014" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-16.el7" id="oval:com.tuxcare.clsa:tst:1754040088001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1754040088001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-16.el7" id="oval:com.tuxcare.clsa:tst:1754040088002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1754040088001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-16.el7" id="oval:com.tuxcare.clsa:tst:1754040088003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1754040088001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-16.el7" id="oval:com.tuxcare.clsa:tst:1754040088004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1754040088001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-16.el7" id="oval:com.tuxcare.clsa:tst:1754040088005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1754040088001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-16.el7" id="oval:com.tuxcare.clsa:tst:1754040088006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1754040088001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-16.el7" id="oval:com.tuxcare.clsa:tst:1754040088007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1754040088001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-20.el7" id="oval:com.tuxcare.clsa:tst:1760098071001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760098071001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-20.el7" id="oval:com.tuxcare.clsa:tst:1760098071002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760098071001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-20.el7" id="oval:com.tuxcare.clsa:tst:1760098071003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760098071001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-20.el7" id="oval:com.tuxcare.clsa:tst:1760098071004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760098071001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-20.el7" id="oval:com.tuxcare.clsa:tst:1760098071005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760098071001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-20.el7" id="oval:com.tuxcare.clsa:tst:1760098071006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760098071001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-20.el7" id="oval:com.tuxcare.clsa:tst:1760098071007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760098071001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-21.el7" id="oval:com.tuxcare.clsa:tst:1760369642001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760369642001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-21.el7" id="oval:com.tuxcare.clsa:tst:1760369642002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760369642001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-21.el7" id="oval:com.tuxcare.clsa:tst:1760369642003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760369642001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-21.el7" id="oval:com.tuxcare.clsa:tst:1760369642004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760369642001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-21.el7" id="oval:com.tuxcare.clsa:tst:1760369642005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760369642001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-21.el7" id="oval:com.tuxcare.clsa:tst:1760369642006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760369642001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-21.el7" id="oval:com.tuxcare.clsa:tst:1760369642007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1760369642001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-13.el7" id="oval:com.tuxcare.clsa:tst:1762528946001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1762528946001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-13.el7" id="oval:com.tuxcare.clsa:tst:1762528946002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1762528946001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-13.el7" id="oval:com.tuxcare.clsa:tst:1762528946003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1762528946001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-13.el7" id="oval:com.tuxcare.clsa:tst:1762528946004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1762528946001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-13.el7" id="oval:com.tuxcare.clsa:tst:1762528946005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1762528946001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-13.el7" id="oval:com.tuxcare.clsa:tst:1762528946006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1762528946001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-13.el7" id="oval:com.tuxcare.clsa:tst:1762528946007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1762528946001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-16.el7" id="oval:com.tuxcare.clsa:tst:1771342308001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1771342308001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-16.el7" id="oval:com.tuxcare.clsa:tst:1771342308002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1771342308001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-16.el7" id="oval:com.tuxcare.clsa:tst:1771342308003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1771342308001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-16.el7" id="oval:com.tuxcare.clsa:tst:1771342308004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1771342308001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-16.el7" id="oval:com.tuxcare.clsa:tst:1771342308005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1771342308001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-16.el7" id="oval:com.tuxcare.clsa:tst:1771342308006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1771342308001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-16.el7" id="oval:com.tuxcare.clsa:tst:1771342308007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1771342308001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-22.el7" id="oval:com.tuxcare.clsa:tst:1772110935001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772110935001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-22.el7" id="oval:com.tuxcare.clsa:tst:1772110935002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772110935001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-22.el7" id="oval:com.tuxcare.clsa:tst:1772110935003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772110935001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-22.el7" id="oval:com.tuxcare.clsa:tst:1772110935004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772110935001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-22.el7" id="oval:com.tuxcare.clsa:tst:1772110935005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772110935001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-22.el7" id="oval:com.tuxcare.clsa:tst:1772110935006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772110935001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-22.el7" id="oval:com.tuxcare.clsa:tst:1772110935007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772110935001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-17.el7" id="oval:com.tuxcare.clsa:tst:1772139305001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772139305001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-17.el7" id="oval:com.tuxcare.clsa:tst:1772139305002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772139305001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-17.el7" id="oval:com.tuxcare.clsa:tst:1772139305003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772139305001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-17.el7" id="oval:com.tuxcare.clsa:tst:1772139305004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772139305001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-17.el7" id="oval:com.tuxcare.clsa:tst:1772139305005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772139305001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-17.el7" id="oval:com.tuxcare.clsa:tst:1772139305006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772139305001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-17.el7" id="oval:com.tuxcare.clsa:tst:1772139305007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772139305001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-23.el7" id="oval:com.tuxcare.clsa:tst:1772192257001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772192257001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-23.el7" id="oval:com.tuxcare.clsa:tst:1772192257002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772192257001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-23.el7" id="oval:com.tuxcare.clsa:tst:1772192257003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772192257001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-23.el7" id="oval:com.tuxcare.clsa:tst:1772192257004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772192257001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-23.el7" id="oval:com.tuxcare.clsa:tst:1772192257005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772192257001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-23.el7" id="oval:com.tuxcare.clsa:tst:1772192257006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772192257001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-23.el7" id="oval:com.tuxcare.clsa:tst:1772192257007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772192257001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-18.el7" id="oval:com.tuxcare.clsa:tst:1772446097001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772446097001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-18.el7" id="oval:com.tuxcare.clsa:tst:1772446097002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772446097001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-18.el7" id="oval:com.tuxcare.clsa:tst:1772446097003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772446097001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-18.el7" id="oval:com.tuxcare.clsa:tst:1772446097004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772446097001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-18.el7" id="oval:com.tuxcare.clsa:tst:1772446097005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772446097001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-18.el7" id="oval:com.tuxcare.clsa:tst:1772446097006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772446097001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-18.el7" id="oval:com.tuxcare.clsa:tst:1772446097007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772446097001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-19.el7" id="oval:com.tuxcare.clsa:tst:1772559096001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772559096001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-19.el7" id="oval:com.tuxcare.clsa:tst:1772559096002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772559096001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-19.el7" id="oval:com.tuxcare.clsa:tst:1772559096003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772559096001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-19.el7" id="oval:com.tuxcare.clsa:tst:1772559096004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772559096001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-19.el7" id="oval:com.tuxcare.clsa:tst:1772559096005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772559096001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-19.el7" id="oval:com.tuxcare.clsa:tst:1772559096006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772559096001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-19.el7" id="oval:com.tuxcare.clsa:tst:1772559096007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772559096001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-24.el7" id="oval:com.tuxcare.clsa:tst:1772721323001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772721323001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-24.el7" id="oval:com.tuxcare.clsa:tst:1772721323002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772721323001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-24.el7" id="oval:com.tuxcare.clsa:tst:1772721323003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772721323001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-24.el7" id="oval:com.tuxcare.clsa:tst:1772721323004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772721323001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-24.el7" id="oval:com.tuxcare.clsa:tst:1772721323005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772721323001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-24.el7" id="oval:com.tuxcare.clsa:tst:1772721323006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772721323001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-24.el7" id="oval:com.tuxcare.clsa:tst:1772721323007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1772721323001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-25.el7" id="oval:com.tuxcare.clsa:tst:1773239891001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1773239891001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-25.el7" id="oval:com.tuxcare.clsa:tst:1773239891002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1773239891001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-25.el7" id="oval:com.tuxcare.clsa:tst:1773239891003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1773239891001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-25.el7" id="oval:com.tuxcare.clsa:tst:1773239891004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1773239891001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-25.el7" id="oval:com.tuxcare.clsa:tst:1773239891005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1773239891001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-25.el7" id="oval:com.tuxcare.clsa:tst:1773239891006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1773239891001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-25.el7" id="oval:com.tuxcare.clsa:tst:1773239891007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1773239891001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-20.el7" id="oval:com.tuxcare.clsa:tst:1776434301001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776434301001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-20.el7" id="oval:com.tuxcare.clsa:tst:1776434301002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776434301001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-20.el7" id="oval:com.tuxcare.clsa:tst:1776434301003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776434301001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-20.el7" id="oval:com.tuxcare.clsa:tst:1776434301004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776434301001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-20.el7" id="oval:com.tuxcare.clsa:tst:1776434301005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776434301001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-20.el7" id="oval:com.tuxcare.clsa:tst:1776434301006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776434301001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-20.el7" id="oval:com.tuxcare.clsa:tst:1776434301007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1776434301001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-27.el7" id="oval:com.tuxcare.clsa:tst:1777046583001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777046583001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-27.el7" id="oval:com.tuxcare.clsa:tst:1777046583002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777046583001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-27.el7" id="oval:com.tuxcare.clsa:tst:1777046583003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777046583001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-27.el7" id="oval:com.tuxcare.clsa:tst:1777046583004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777046583001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-27.el7" id="oval:com.tuxcare.clsa:tst:1777046583005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777046583001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-27.el7" id="oval:com.tuxcare.clsa:tst:1777046583006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777046583001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-27.el7" id="oval:com.tuxcare.clsa:tst:1777046583007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777046583001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-21.el7" id="oval:com.tuxcare.clsa:tst:1777385319001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777385319001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-21.el7" id="oval:com.tuxcare.clsa:tst:1777385319002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777385319001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-21.el7" id="oval:com.tuxcare.clsa:tst:1777385319003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777385319001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-21.el7" id="oval:com.tuxcare.clsa:tst:1777385319004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777385319001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-21.el7" id="oval:com.tuxcare.clsa:tst:1777385319005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777385319001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-21.el7" id="oval:com.tuxcare.clsa:tst:1777385319006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777385319001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-21.el7" id="oval:com.tuxcare.clsa:tst:1777385319007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777385319001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-29.el7" id="oval:com.tuxcare.clsa:tst:1777478282001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777478282001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-29.el7" id="oval:com.tuxcare.clsa:tst:1777478282002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777478282001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-29.el7" id="oval:com.tuxcare.clsa:tst:1777478282003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777478282001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-29.el7" id="oval:com.tuxcare.clsa:tst:1777478282004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777478282001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-29.el7" id="oval:com.tuxcare.clsa:tst:1777478282005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777478282001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-29.el7" id="oval:com.tuxcare.clsa:tst:1777478282006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777478282001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-29.el7" id="oval:com.tuxcare.clsa:tst:1777478282007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777478282001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-30.el7" id="oval:com.tuxcare.clsa:tst:1777629862001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777629862001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-30.el7" id="oval:com.tuxcare.clsa:tst:1777629862002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777629862001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-30.el7" id="oval:com.tuxcare.clsa:tst:1777629862003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777629862001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-30.el7" id="oval:com.tuxcare.clsa:tst:1777629862004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777629862001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-30.el7" id="oval:com.tuxcare.clsa:tst:1777629862005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777629862001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-30.el7" id="oval:com.tuxcare.clsa:tst:1777629862006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777629862001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-30.el7" id="oval:com.tuxcare.clsa:tst:1777629862007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777629862001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-22.el7" id="oval:com.tuxcare.clsa:tst:1777636941001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777636941001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-22.el7" id="oval:com.tuxcare.clsa:tst:1777636941002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777636941001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-22.el7" id="oval:com.tuxcare.clsa:tst:1777636941003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777636941001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-22.el7" id="oval:com.tuxcare.clsa:tst:1777636941004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777636941001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-22.el7" id="oval:com.tuxcare.clsa:tst:1777636941005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777636941001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-22.el7" id="oval:com.tuxcare.clsa:tst:1777636941006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777636941001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-22.el7" id="oval:com.tuxcare.clsa:tst:1777636941007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1777636941001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-23.el7" id="oval:com.tuxcare.clsa:tst:1778156502001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778156502001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-23.el7" id="oval:com.tuxcare.clsa:tst:1778156502002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778156502001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-23.el7" id="oval:com.tuxcare.clsa:tst:1778156502003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778156502001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-23.el7" id="oval:com.tuxcare.clsa:tst:1778156502004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778156502001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-23.el7" id="oval:com.tuxcare.clsa:tst:1778156502005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778156502001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-23.el7" id="oval:com.tuxcare.clsa:tst:1778156502006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778156502001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-23.el7" id="oval:com.tuxcare.clsa:tst:1778156502007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778156502001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-31.el7" id="oval:com.tuxcare.clsa:tst:1778245807001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778245807001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-31.el7" id="oval:com.tuxcare.clsa:tst:1778245807002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778245807001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-31.el7" id="oval:com.tuxcare.clsa:tst:1778245807003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778245807001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-31.el7" id="oval:com.tuxcare.clsa:tst:1778245807004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778245807001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-31.el7" id="oval:com.tuxcare.clsa:tst:1778245807005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778245807001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-31.el7" id="oval:com.tuxcare.clsa:tst:1778245807006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778245807001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-31.el7" id="oval:com.tuxcare.clsa:tst:1778245807007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1778245807001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-24.el7" id="oval:com.tuxcare.clsa:tst:1779274964001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779274964001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-24.el7" id="oval:com.tuxcare.clsa:tst:1779274964002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779274964001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-24.el7" id="oval:com.tuxcare.clsa:tst:1779274964003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779274964001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-24.el7" id="oval:com.tuxcare.clsa:tst:1779274964004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779274964001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-24.el7" id="oval:com.tuxcare.clsa:tst:1779274964005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779274964001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-24.el7" id="oval:com.tuxcare.clsa:tst:1779274964006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779274964001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-24.el7" id="oval:com.tuxcare.clsa:tst:1779274964007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779274964001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-32.el7" id="oval:com.tuxcare.clsa:tst:1779453870001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779453870001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-32.el7" id="oval:com.tuxcare.clsa:tst:1779453870002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779453870001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-32.el7" id="oval:com.tuxcare.clsa:tst:1779453870003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779453870001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-32.el7" id="oval:com.tuxcare.clsa:tst:1779453870004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779453870001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-32.el7" id="oval:com.tuxcare.clsa:tst:1779453870005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779453870001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-32.el7" id="oval:com.tuxcare.clsa:tst:1779453870006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779453870001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-32.el7" id="oval:com.tuxcare.clsa:tst:1779453870007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779453870001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-25.el7" id="oval:com.tuxcare.clsa:tst:1779880099001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779880099001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-25.el7" id="oval:com.tuxcare.clsa:tst:1779880099002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779880099001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-25.el7" id="oval:com.tuxcare.clsa:tst:1779880099003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779880099001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-25.el7" id="oval:com.tuxcare.clsa:tst:1779880099004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779880099001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-25.el7" id="oval:com.tuxcare.clsa:tst:1779880099005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779880099001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-25.el7" id="oval:com.tuxcare.clsa:tst:1779880099006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779880099001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-25.el7" id="oval:com.tuxcare.clsa:tst:1779880099007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1779880099001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-28.el7" id="oval:com.tuxcare.clsa:tst:1780514018001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1780514018001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-28.el7" id="oval:com.tuxcare.clsa:tst:1780514018002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1780514018001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-28.el7" id="oval:com.tuxcare.clsa:tst:1780514018003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1780514018001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-28.el7" id="oval:com.tuxcare.clsa:tst:1780514018004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1780514018001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-28.el7" id="oval:com.tuxcare.clsa:tst:1780514018005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1780514018001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-28.el7" id="oval:com.tuxcare.clsa:tst:1780514018006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1780514018001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-28.el7" id="oval:com.tuxcare.clsa:tst:1780514018007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1780514018001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-34.el7" id="oval:com.tuxcare.clsa:tst:1781101388001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781101388001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-34.el7" id="oval:com.tuxcare.clsa:tst:1781101388002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781101388001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-34.el7" id="oval:com.tuxcare.clsa:tst:1781101388003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781101388001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-34.el7" id="oval:com.tuxcare.clsa:tst:1781101388004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781101388001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-34.el7" id="oval:com.tuxcare.clsa:tst:1781101388005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781101388001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-34.el7" id="oval:com.tuxcare.clsa:tst:1781101388006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781101388001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-34.el7" id="oval:com.tuxcare.clsa:tst:1781101388007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781101388001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-29.el7" id="oval:com.tuxcare.clsa:tst:1781520608001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781520608001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-29.el7" id="oval:com.tuxcare.clsa:tst:1781520608002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781520608001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-29.el7" id="oval:com.tuxcare.clsa:tst:1781520608003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781520608001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-29.el7" id="oval:com.tuxcare.clsa:tst:1781520608004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781520608001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-29.el7" id="oval:com.tuxcare.clsa:tst:1781520608005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781520608001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-29.el7" id="oval:com.tuxcare.clsa:tst:1781520608006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781520608001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-29.el7" id="oval:com.tuxcare.clsa:tst:1781520608007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1781520608001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-30.el7" id="oval:com.tuxcare.clsa:tst:1782370892001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782370892001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-30.el7" id="oval:com.tuxcare.clsa:tst:1782370892002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782370892001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-30.el7" id="oval:com.tuxcare.clsa:tst:1782370892003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782370892001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-30.el7" id="oval:com.tuxcare.clsa:tst:1782370892004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782370892001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-30.el7" id="oval:com.tuxcare.clsa:tst:1782370892005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782370892001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-30.el7" id="oval:com.tuxcare.clsa:tst:1782370892006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782370892001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-30.el7" id="oval:com.tuxcare.clsa:tst:1782370892007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782370892001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-35.el7" id="oval:com.tuxcare.clsa:tst:1782998534001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782998534001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-35.el7" id="oval:com.tuxcare.clsa:tst:1782998534002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782998534001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-35.el7" id="oval:com.tuxcare.clsa:tst:1782998534003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782998534001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-35.el7" id="oval:com.tuxcare.clsa:tst:1782998534004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782998534001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-35.el7" id="oval:com.tuxcare.clsa:tst:1782998534005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782998534001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-35.el7" id="oval:com.tuxcare.clsa:tst:1782998534006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782998534001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-35.el7" id="oval:com.tuxcare.clsa:tst:1782998534007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1782998534001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-37.el7" id="oval:com.tuxcare.clsa:tst:1783342568001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1783342568001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-37.el7" id="oval:com.tuxcare.clsa:tst:1783342568002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1783342568001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-37.el7" id="oval:com.tuxcare.clsa:tst:1783342568003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1783342568001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-37.el7" id="oval:com.tuxcare.clsa:tst:1783342568004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1783342568001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-37.el7" id="oval:com.tuxcare.clsa:tst:1783342568005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1783342568001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-37.el7" id="oval:com.tuxcare.clsa:tst:1783342568006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1783342568001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-37.el7" id="oval:com.tuxcare.clsa:tst:1783342568007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1783342568001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38 is earlier than 0:3.8.20-19.el7" id="oval:com.tuxcare.clsa:tst:1784299368001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784299368001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python38 isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784299368002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-debug is earlier than 0:3.8.20-19.el7" id="oval:com.tuxcare.clsa:tst:1784299368003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784299368001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python38-debug isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784299368004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-devel is earlier than 0:3.8.20-19.el7" id="oval:com.tuxcare.clsa:tst:1784299368005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784299368001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python38-devel isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784299368006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-idle is earlier than 0:3.8.20-19.el7" id="oval:com.tuxcare.clsa:tst:1784299368007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784299368001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python38-idle isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784299368008" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-libs is earlier than 0:3.8.20-19.el7" id="oval:com.tuxcare.clsa:tst:1784299368009" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784299368001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python38-libs isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784299368010" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-test is earlier than 0:3.8.20-19.el7" id="oval:com.tuxcare.clsa:tst:1784299368011" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784299368001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python38-test isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784299368012" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-tkinter is earlier than 0:3.8.20-19.el7" id="oval:com.tuxcare.clsa:tst:1784299368013" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784299368001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python38-tkinter isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784299368014" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39 is earlier than 0:3.9.23-17.el7" id="oval:com.tuxcare.clsa:tst:1784291554001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784291554001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python39 isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784291554002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-debug is earlier than 0:3.9.23-17.el7" id="oval:com.tuxcare.clsa:tst:1784291554003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784291554001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python39-debug isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784291554004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-devel is earlier than 0:3.9.23-17.el7" id="oval:com.tuxcare.clsa:tst:1784291554005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784291554001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python39-devel isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784291554006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-idle is earlier than 0:3.9.23-17.el7" id="oval:com.tuxcare.clsa:tst:1784291554007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784291554001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python39-idle isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784291554008" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-libs is earlier than 0:3.9.23-17.el7" id="oval:com.tuxcare.clsa:tst:1784291554009" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784291554001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python39-libs isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784291554010" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-test is earlier than 0:3.9.23-17.el7" id="oval:com.tuxcare.clsa:tst:1784291554011" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784291554001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python39-test isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784291554012" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-tkinter is earlier than 0:3.9.23-17.el7" id="oval:com.tuxcare.clsa:tst:1784291554013" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784291554001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python39-tkinter isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784291554014" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310 is earlier than 0:3.10.20-1.el7" id="oval:com.tuxcare.clsa:tst:1784307767001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784307767001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python310 isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784307767002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-debug is earlier than 0:3.10.20-1.el7" id="oval:com.tuxcare.clsa:tst:1784307767003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784307767001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python310-debug isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784307767004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-devel is earlier than 0:3.10.20-1.el7" id="oval:com.tuxcare.clsa:tst:1784307767005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784307767001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python310-devel isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784307767006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-idle is earlier than 0:3.10.20-1.el7" id="oval:com.tuxcare.clsa:tst:1784307767007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784307767001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python310-idle isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784307767008" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-libs is earlier than 0:3.10.20-1.el7" id="oval:com.tuxcare.clsa:tst:1784307767009" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784307767001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python310-libs isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784307767010" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-test is earlier than 0:3.10.20-1.el7" id="oval:com.tuxcare.clsa:tst:1784307767011" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784307767001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python310-test isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784307767012" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-tkinter is earlier than 0:3.10.20-1.el7" id="oval:com.tuxcare.clsa:tst:1784307767013" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784307767001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python310-tkinter isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784307767014" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311 is earlier than 0:3.11.15-1.el7" id="oval:com.tuxcare.clsa:tst:1784309526001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784309526001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python311 isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784309526002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-debug is earlier than 0:3.11.15-1.el7" id="oval:com.tuxcare.clsa:tst:1784309526003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784309526001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python311-debug isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784309526004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-devel is earlier than 0:3.11.15-1.el7" id="oval:com.tuxcare.clsa:tst:1784309526005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784309526001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python311-devel isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784309526006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-idle is earlier than 0:3.11.15-1.el7" id="oval:com.tuxcare.clsa:tst:1784309526007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784309526001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python311-idle isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784309526008" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-libs is earlier than 0:3.11.15-1.el7" id="oval:com.tuxcare.clsa:tst:1784309526009" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784309526001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python311-libs isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784309526010" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-test is earlier than 0:3.11.15-1.el7" id="oval:com.tuxcare.clsa:tst:1784309526011" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784309526001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python311-test isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784309526012" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-tkinter is earlier than 0:3.11.15-1.el7" id="oval:com.tuxcare.clsa:tst:1784309526013" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784309526001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python311-tkinter isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784309526014" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-setuptools is earlier than 0:58.3.0-3.el7" id="oval:com.tuxcare.clsa:tst:1784533840001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784533840001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784533840001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python38-setuptools isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784533840002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784533840001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-setuptools-wheel is earlier than 0:58.3.0-3.el7" id="oval:com.tuxcare.clsa:tst:1784533840003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784533840003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784533840001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="none satisfy" comment="alt-python38-setuptools-wheel isn't signed with TuxCare key" id="oval:com.tuxcare.clsa:tst:1784533840004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784533840003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1748350001002"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27 is earlier than 0:2.7.18-38.el7" id="oval:com.tuxcare.clsa:tst:1784799539001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784799539001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-debug is earlier than 0:2.7.18-38.el7" id="oval:com.tuxcare.clsa:tst:1784799539002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784799539001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-devel is earlier than 0:2.7.18-38.el7" id="oval:com.tuxcare.clsa:tst:1784799539003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784799539001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-libs is earlier than 0:2.7.18-38.el7" id="oval:com.tuxcare.clsa:tst:1784799539004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784799539001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-test is earlier than 0:2.7.18-38.el7" id="oval:com.tuxcare.clsa:tst:1784799539005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784799539001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tkinter is earlier than 0:2.7.18-38.el7" id="oval:com.tuxcare.clsa:tst:1784799539006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784799539001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python27-tools is earlier than 0:2.7.18-38.el7" id="oval:com.tuxcare.clsa:tst:1784799539007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1753804481013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784799539001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310 is earlier than 0:3.10.20-2.el7" id="oval:com.tuxcare.clsa:tst:1784802977001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784802977001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-debug is earlier than 0:3.10.20-2.el7" id="oval:com.tuxcare.clsa:tst:1784802977002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784802977001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-devel is earlier than 0:3.10.20-2.el7" id="oval:com.tuxcare.clsa:tst:1784802977003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784802977001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-idle is earlier than 0:3.10.20-2.el7" id="oval:com.tuxcare.clsa:tst:1784802977004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784802977001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-libs is earlier than 0:3.10.20-2.el7" id="oval:com.tuxcare.clsa:tst:1784802977005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784802977001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-test is earlier than 0:3.10.20-2.el7" id="oval:com.tuxcare.clsa:tst:1784802977006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784802977001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-tkinter is earlier than 0:3.10.20-2.el7" id="oval:com.tuxcare.clsa:tst:1784802977007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784802977001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39 is earlier than 0:3.9.23-19.el7" id="oval:com.tuxcare.clsa:tst:1784804986001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784804986001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-debug is earlier than 0:3.9.23-19.el7" id="oval:com.tuxcare.clsa:tst:1784804986002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784804986001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-devel is earlier than 0:3.9.23-19.el7" id="oval:com.tuxcare.clsa:tst:1784804986003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784804986001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-idle is earlier than 0:3.9.23-19.el7" id="oval:com.tuxcare.clsa:tst:1784804986004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784804986001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-libs is earlier than 0:3.9.23-19.el7" id="oval:com.tuxcare.clsa:tst:1784804986005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784804986001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-test is earlier than 0:3.9.23-19.el7" id="oval:com.tuxcare.clsa:tst:1784804986006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784804986001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python39-tkinter is earlier than 0:3.9.23-19.el7" id="oval:com.tuxcare.clsa:tst:1784804986007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784291554013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784804986001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38 is earlier than 0:3.8.20-20.el7" id="oval:com.tuxcare.clsa:tst:1784808690001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784808690001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-debug is earlier than 0:3.8.20-20.el7" id="oval:com.tuxcare.clsa:tst:1784808690002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784808690001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-devel is earlier than 0:3.8.20-20.el7" id="oval:com.tuxcare.clsa:tst:1784808690003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784808690001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-idle is earlier than 0:3.8.20-20.el7" id="oval:com.tuxcare.clsa:tst:1784808690004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784808690001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-libs is earlier than 0:3.8.20-20.el7" id="oval:com.tuxcare.clsa:tst:1784808690005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784808690001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-test is earlier than 0:3.8.20-20.el7" id="oval:com.tuxcare.clsa:tst:1784808690006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784808690001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python38-tkinter is earlier than 0:3.8.20-20.el7" id="oval:com.tuxcare.clsa:tst:1784808690007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784299368013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784808690001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36 is earlier than 0:3.6.15-31.el7" id="oval:com.tuxcare.clsa:tst:1784824602001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784824602001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-debug is earlier than 0:3.6.15-31.el7" id="oval:com.tuxcare.clsa:tst:1784824602002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784824602001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-devel is earlier than 0:3.6.15-31.el7" id="oval:com.tuxcare.clsa:tst:1784824602003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784824602001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-libs is earlier than 0:3.6.15-31.el7" id="oval:com.tuxcare.clsa:tst:1784824602004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784824602001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-test is earlier than 0:3.6.15-31.el7" id="oval:com.tuxcare.clsa:tst:1784824602005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784824602001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tkinter is earlier than 0:3.6.15-31.el7" id="oval:com.tuxcare.clsa:tst:1784824602006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784824602001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python36-tools is earlier than 0:3.6.15-31.el7" id="oval:com.tuxcare.clsa:tst:1784824602007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1748350001013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784824602001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311 is earlier than 0:3.11.15-3.el7" id="oval:com.tuxcare.clsa:tst:1784818766001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784818766001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-debug is earlier than 0:3.11.15-3.el7" id="oval:com.tuxcare.clsa:tst:1784818766002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784818766001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-devel is earlier than 0:3.11.15-3.el7" id="oval:com.tuxcare.clsa:tst:1784818766003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784818766001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-idle is earlier than 0:3.11.15-3.el7" id="oval:com.tuxcare.clsa:tst:1784818766004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784818766001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-libs is earlier than 0:3.11.15-3.el7" id="oval:com.tuxcare.clsa:tst:1784818766005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784818766001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-test is earlier than 0:3.11.15-3.el7" id="oval:com.tuxcare.clsa:tst:1784818766006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784818766001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python311-tkinter is earlier than 0:3.11.15-3.el7" id="oval:com.tuxcare.clsa:tst:1784818766007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784309526013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784818766001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310 is earlier than 0:3.10.20-3.el7" id="oval:com.tuxcare.clsa:tst:1784881258001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784881258001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-debug is earlier than 0:3.10.20-3.el7" id="oval:com.tuxcare.clsa:tst:1784881258002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784881258001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-devel is earlier than 0:3.10.20-3.el7" id="oval:com.tuxcare.clsa:tst:1784881258003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784881258001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-idle is earlier than 0:3.10.20-3.el7" id="oval:com.tuxcare.clsa:tst:1784881258004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784881258001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-libs is earlier than 0:3.10.20-3.el7" id="oval:com.tuxcare.clsa:tst:1784881258005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784881258001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-test is earlier than 0:3.10.20-3.el7" id="oval:com.tuxcare.clsa:tst:1784881258006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784881258001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-tkinter is earlier than 0:3.10.20-3.el7" id="oval:com.tuxcare.clsa:tst:1784881258007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784881258001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310 is earlier than 0:3.10.20-4.el7" id="oval:com.tuxcare.clsa:tst:1784899083001" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767001"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784899083001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-debug is earlier than 0:3.10.20-4.el7" id="oval:com.tuxcare.clsa:tst:1784899083002" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767003"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784899083001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-devel is earlier than 0:3.10.20-4.el7" id="oval:com.tuxcare.clsa:tst:1784899083003" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767005"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784899083001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-idle is earlier than 0:3.10.20-4.el7" id="oval:com.tuxcare.clsa:tst:1784899083004" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767007"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784899083001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-libs is earlier than 0:3.10.20-4.el7" id="oval:com.tuxcare.clsa:tst:1784899083005" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767009"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784899083001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-test is earlier than 0:3.10.20-4.el7" id="oval:com.tuxcare.clsa:tst:1784899083006" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767011"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784899083001"/>
    </red-def:rpminfo_test>
    <red-def:rpminfo_test check="at least one" comment="alt-python310-tkinter is earlier than 0:3.10.20-4.el7" id="oval:com.tuxcare.clsa:tst:1784899083007" version="1">
      <red-def:object object_ref="oval:com.tuxcare.clsa:obj:1784307767013"/>
      <red-def:state state_ref="oval:com.tuxcare.clsa:ste:1784899083001"/>
    </red-def:rpminfo_test>
  </tests>
  <objects>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1748350001001" version="1">
      <red-def:name>alt-python36</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1748350001003" version="1">
      <red-def:name>alt-python36-debug</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1748350001005" version="1">
      <red-def:name>alt-python36-devel</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1748350001007" version="1">
      <red-def:name>alt-python36-libs</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1748350001009" version="1">
      <red-def:name>alt-python36-test</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1748350001011" version="1">
      <red-def:name>alt-python36-tkinter</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1748350001013" version="1">
      <red-def:name>alt-python36-tools</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1753804481001" version="1">
      <red-def:name>alt-python27</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1753804481003" version="1">
      <red-def:name>alt-python27-debug</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1753804481005" version="1">
      <red-def:name>alt-python27-devel</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1753804481007" version="1">
      <red-def:name>alt-python27-libs</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1753804481009" version="1">
      <red-def:name>alt-python27-test</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1753804481011" version="1">
      <red-def:name>alt-python27-tkinter</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1753804481013" version="1">
      <red-def:name>alt-python27-tools</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784299368001" version="1">
      <red-def:name>alt-python38</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784299368003" version="1">
      <red-def:name>alt-python38-debug</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784299368005" version="1">
      <red-def:name>alt-python38-devel</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784299368007" version="1">
      <red-def:name>alt-python38-idle</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784299368009" version="1">
      <red-def:name>alt-python38-libs</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784299368011" version="1">
      <red-def:name>alt-python38-test</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784299368013" version="1">
      <red-def:name>alt-python38-tkinter</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784291554001" version="1">
      <red-def:name>alt-python39</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784291554003" version="1">
      <red-def:name>alt-python39-debug</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784291554005" version="1">
      <red-def:name>alt-python39-devel</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784291554007" version="1">
      <red-def:name>alt-python39-idle</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784291554009" version="1">
      <red-def:name>alt-python39-libs</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784291554011" version="1">
      <red-def:name>alt-python39-test</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784291554013" version="1">
      <red-def:name>alt-python39-tkinter</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784307767001" version="1">
      <red-def:name>alt-python310</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784307767003" version="1">
      <red-def:name>alt-python310-debug</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784307767005" version="1">
      <red-def:name>alt-python310-devel</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784307767007" version="1">
      <red-def:name>alt-python310-idle</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784307767009" version="1">
      <red-def:name>alt-python310-libs</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784307767011" version="1">
      <red-def:name>alt-python310-test</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784307767013" version="1">
      <red-def:name>alt-python310-tkinter</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784309526001" version="1">
      <red-def:name>alt-python311</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784309526003" version="1">
      <red-def:name>alt-python311-debug</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784309526005" version="1">
      <red-def:name>alt-python311-devel</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784309526007" version="1">
      <red-def:name>alt-python311-idle</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784309526009" version="1">
      <red-def:name>alt-python311-libs</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784309526011" version="1">
      <red-def:name>alt-python311-test</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784309526013" version="1">
      <red-def:name>alt-python311-tkinter</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784533840001" version="1">
      <red-def:name>alt-python38-setuptools</red-def:name>
    </red-def:rpminfo_object>
    <red-def:rpminfo_object id="oval:com.tuxcare.clsa:obj:1784533840003" version="1">
      <red-def:name>alt-python38-setuptools-wheel</red-def:name>
    </red-def:rpminfo_object>
  </objects>
  <states>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1748350001001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-6.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1748350001002" version="1">
      <red-def:signature_keyid operation="equals">d07bf2a08d50eb66</red-def:signature_keyid>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1749037497001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-7.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1753205772001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-8.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1753804481001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-14.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1754040088001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-16.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1760098071001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-20.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1760369642001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-21.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1762528946001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-13.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1771342308001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-16.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1772110935001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-22.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1772139305001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-17.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1772192257001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-23.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1772446097001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-18.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1772559096001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-19.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1772721323001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-24.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1773239891001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-25.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1776434301001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-20.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1777046583001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-27.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1777385319001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-21.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1777478282001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-29.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1777629862001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-30.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1777636941001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-22.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1778156502001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-23.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1778245807001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-31.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1779274964001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-24.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1779453870001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-32.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1779880099001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-25.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1780514018001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-28.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1781101388001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-34.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1781520608001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-29.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1782370892001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-30.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1782998534001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-35.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1783342568001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-37.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784299368001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.8.20-19.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784291554001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.9.23-17.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784307767001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.10.20-1.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784309526001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.11.15-1.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784533840001" version="1">
      <red-def:evr datatype="evr_string" operation="less than">0:58.3.0-3.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784799539001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:2.7.18-38.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784802977001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.10.20-2.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784804986001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.9.23-19.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784808690001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.8.20-20.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784824602001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.6.15-31.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784818766001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.11.15-3.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784881258001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.10.20-3.el7</red-def:evr>
    </red-def:rpminfo_state>
    <red-def:rpminfo_state id="oval:com.tuxcare.clsa:ste:1784899083001" version="1">
      <red-def:arch datatype="string" operation="equals">x86_64</red-def:arch>
      <red-def:evr datatype="evr_string" operation="less than">0:3.10.20-4.el7</red-def:evr>
    </red-def:rpminfo_state>
  </states>
</oval_definitions>
