[CLSA-2026:1784901250] Fix CVE(s): CVE-2026-15308
Type:
security
Severity:
Important
Release date:
2026-07-24 13:54:41 UTC
Description:
* SECURITY UPDATE: quadratic-complexity CPU denial of service in html.parser - debian/patches/CVE-2026-15308.patch: accumulate incremental feed() data to avoid re-scanning/concatenating unterminated constructs quadratically - CVE-2026-15308
CVEs fixed:
Updated packages:
  • alt-python310_3.10.20-5_amd64.deb
    sha:eaaba919c5e033e503daddd8847ef12f6cfc0d11
  • alt-python310-debug_3.10.20-5_amd64.deb
    sha:4935a0048d68ebd5ee0dfbc46b95da7e317e7dad
  • alt-python310-devel_3.10.20-5_amd64.deb
    sha:02ea373283f42dd41f5f2842c52ab164591ea18c
  • alt-python310-idle_3.10.20-5_amd64.deb
    sha:94ef59ebd21e72372a65d95897da144ae883e181
  • alt-python310-libs_3.10.20-5_amd64.deb
    sha:96e8abfecca1fced57fa3cd9687b812438e322cf
  • alt-python310-test_3.10.20-5_amd64.deb
    sha:79d7e24fcf422b64576f1e01b3238b9abf4b9b9d
  • alt-python310-tkinter_3.10.20-5_amd64.deb
    sha:25669cd0540417fcd5186a9aeaa9f766e577ec70
  • alt-python310_3.10.20-5_arm64.deb
    sha:44adafefda917cd0ff9f1580e74292f0706d533c
  • alt-python310-debug_3.10.20-5_arm64.deb
    sha:bebe39ac8bf09cbc8861911bfc4e8d7d24fd6b02
  • alt-python310-devel_3.10.20-5_arm64.deb
    sha:e5218c041fd91788ff22ae53de0984b71c32a300
  • alt-python310-idle_3.10.20-5_arm64.deb
    sha:b2bde4c9b40c0e11f666bc46cce1d3ae923b7653
  • alt-python310-libs_3.10.20-5_arm64.deb
    sha:7e8f6561a4fb3205733b497e4bf2ecccf0072294
  • alt-python310-test_3.10.20-5_arm64.deb
    sha:32f04abd596d9d76b59a2d92ca330e8b4a47ec00
  • alt-python310-tkinter_3.10.20-5_arm64.deb
    sha:a5a75a25dd9fec0dc317cdf7610a2219165453fa
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.