[CLSA-2026:1784888448] Fix CVE(s): CVE-2026-15308
Type:
security
Severity:
Important
Release date:
2026-07-24 10:21:14 UTC
Description:
* SECURITY UPDATE: quadratic-complexity CPU denial of service in html.parser - debian/patches/CVE-2026-15308.patch: accumulate incremental feed() data to avoid re-scanning/concatenating unterminated constructs quadratically - CVE-2026-15308
CVEs fixed:
Updated packages:
  • alt-python310_3.10.20-5_amd64.deb
    sha:a9c075ebb73b30fa6d0e918a03352b15b875bddf
  • alt-python310-debug_3.10.20-5_amd64.deb
    sha:89e0dab3097f7389d3c239c75399b7adf7dddc69
  • alt-python310-devel_3.10.20-5_amd64.deb
    sha:82db67678b4453dcd9934302b12318865d643733
  • alt-python310-idle_3.10.20-5_amd64.deb
    sha:822dd4bced9f20c6ae6bd1d24129771e5895f271
  • alt-python310-libs_3.10.20-5_amd64.deb
    sha:510d9a4be87d0ca824f502fc424e3a3b7536d109
  • alt-python310-test_3.10.20-5_amd64.deb
    sha:2643d8f4f628ae54fbf499a485605a308b01c081
  • alt-python310-tkinter_3.10.20-5_amd64.deb
    sha:c90958d3fcad91713d3cfff7c85b495b7c1a4e23
  • alt-python310_3.10.20-5_arm64.deb
    sha:36ea4f9ca47c6eb1b09eac9e7549ddbfbc49d6b2
  • alt-python310-debug_3.10.20-5_arm64.deb
    sha:9ca48d98f202eef8f415a6d8882ab1e0055e4e32
  • alt-python310-devel_3.10.20-5_arm64.deb
    sha:81011c22fe4536c975ecacd9531e69bef7c5ec9b
  • alt-python310-idle_3.10.20-5_arm64.deb
    sha:f25deb287744cc6bf8fb3f5b830946c6dfa673a2
  • alt-python310-libs_3.10.20-5_arm64.deb
    sha:3616186498e9c2f800de5aa3f2fdd65bc19a7e89
  • alt-python310-test_3.10.20-5_arm64.deb
    sha:32f48581d1e2c1de477958dab96968f7d425ad6e
  • alt-python310-tkinter_3.10.20-5_arm64.deb
    sha:27964893ac3a5a170e286bcdc1706d9e796e0e38
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.