[CLSA-2026:1784889140] Fix CVE(s): CVE-2026-15308
Type:
security
Severity:
Important
Release date:
2026-07-24 10:32:46 UTC
Description:
* SECURITY UPDATE: quadratic-complexity CPU denial of service in html.parser - debian/patches/CVE-2026-15308.patch: accumulate incremental feed() data to avoid re-scanning/concatenating unterminated constructs quadratically - CVE-2026-15308
CVEs fixed:
Updated packages:
  • alt-python310_3.10.20-5_amd64.deb
    sha:bb8d9fd3fafb2db346a1c301484153ba1687b624
  • alt-python310-debug_3.10.20-5_amd64.deb
    sha:4935a0048d68ebd5ee0dfbc46b95da7e317e7dad
  • alt-python310-devel_3.10.20-5_amd64.deb
    sha:7b5534ccf04387d508362554a48775edbde2dfaa
  • alt-python310-idle_3.10.20-5_amd64.deb
    sha:2ab4ad36e34baabd3e0761dbdd8d9971a1d07823
  • alt-python310-libs_3.10.20-5_amd64.deb
    sha:2a7ee9f138e5d97af50be5dce4b413362c02ccca
  • alt-python310-test_3.10.20-5_amd64.deb
    sha:e5b07fd1ffcaad1d74c3e291105b10fd3d0d1920
  • alt-python310-tkinter_3.10.20-5_amd64.deb
    sha:b57f58cbfa388301195ddc7219c4021f6e06c1f7
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.