[CLSA-2026:1784888799] Fix CVE(s): CVE-2026-15308
Type:
security
Severity:
Important
Release date:
2026-07-24 10:27:05 UTC
Description:
* SECURITY UPDATE: quadratic-complexity CPU denial of service in html.parser - debian/patches/CVE-2026-15308.patch: accumulate incremental feed() data to avoid re-scanning/concatenating unterminated constructs quadratically - CVE-2026-15308
CVEs fixed:
Updated packages:
  • alt-python310_3.10.20-5_amd64.deb
    sha:56e8c0251fe6fcfa7be981aff20362184e3911ab
  • alt-python310-debug_3.10.20-5_amd64.deb
    sha:89e0dab3097f7389d3c239c75399b7adf7dddc69
  • alt-python310-devel_3.10.20-5_amd64.deb
    sha:035196682d1491a42164d5ac7ef4d51210c5737d
  • alt-python310-idle_3.10.20-5_amd64.deb
    sha:94d6d963e0056963a3b51463858c0a28afdd4f6a
  • alt-python310-libs_3.10.20-5_amd64.deb
    sha:1ba55087b1aaf4d3b1907129e8a9dee46bdfcf4d
  • alt-python310-test_3.10.20-5_amd64.deb
    sha:e968e044126b3f7f466a20e855524a5b3be31dca
  • alt-python310-tkinter_3.10.20-5_amd64.deb
    sha:121383b599decd72ead58625b6c80ca58132c890
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.