[CLSA-2026:1784898617] Fix CVE(s): CVE-2026-15308
Type:
security
Severity:
Important
Release date:
2026-07-24 13:23:38 UTC
Description:
* SECURITY UPDATE: quadratic-complexity CPU denial of service in html.parser - debian/patches/CVE-2026-15308.patch: accumulate incremental feed() data to avoid re-scanning/concatenating unterminated constructs quadratically - CVE-2026-15308
CVEs fixed:
Updated packages:
  • alt-python310_3.10.20-5_amd64.deb
    sha:1d3ac2fdf2fb12615832257ee2686e3c9019b406
  • alt-python310-debug_3.10.20-5_amd64.deb
    sha:44430f1aa8c85c15762d88aa8450c7b9960f0541
  • alt-python310-devel_3.10.20-5_amd64.deb
    sha:fe4836f5e5ec428c7ab6f7c006b3e29dd5e447e1
  • alt-python310-idle_3.10.20-5_amd64.deb
    sha:fce05288ea146418b3255017cfcec8b0d3cace21
  • alt-python310-libs_3.10.20-5_amd64.deb
    sha:4bf98f9bf836fa46634cf042d72f1f2487800fd6
  • alt-python310-test_3.10.20-5_amd64.deb
    sha:03a0e20ed9414fab9404a373dfc0abcf87a35baf
  • alt-python310-tkinter_3.10.20-5_amd64.deb
    sha:c743c9455560cc6afead946a8ea6f858d0dbbe6e
  • alt-python310_3.10.20-5_arm64.deb
    sha:5eb9a2f80c4f9aeb9e8ff94aa0928360d763b104
  • alt-python310-debug_3.10.20-5_arm64.deb
    sha:b102dbd673d23695a3637156779cb4d125cc4c3a
  • alt-python310-devel_3.10.20-5_arm64.deb
    sha:eed42549b4c4b3d8cc2cfc8cd6c753c495308c7a
  • alt-python310-idle_3.10.20-5_arm64.deb
    sha:a6c41bb543c3f11bfb8bd0fb54e468a5ddf7b4fa
  • alt-python310-libs_3.10.20-5_arm64.deb
    sha:fef7734749bb50f52f50dc1460d77fc0cef14f46
  • alt-python310-test_3.10.20-5_arm64.deb
    sha:4cc043627d37b6bf96c6139d10730f0e50a0c25f
  • alt-python310-tkinter_3.10.20-5_arm64.deb
    sha:30fa054576c294c431c71d47af9fae262449a636
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.