Release date:
                    
                    
                        2025-10-17 13:19:34 UTC
                    
                 
                
                    
                        Description:
                    
                       * SECURITY UPDATE: Web cache poisoning vulnerability
     - debian/patches/CVE-2021-23336.patch: fix web cache poisoning
       via urllib.parse.parse_qsl and urllib.parse.parse_qs
     - CVE-2021-23336
   * SECURITY UPDATE: Regular expression denial of service
     - debian/patches/CVE-2021-3733.patch: fix flaw in urllib’s
       AbstractBasicAuthHandler that could lead to a denial of service
       by leveraging a regular expression
     - CVE-2021-3733
   * SECURITY UPDATE: Constant-time-defeating optimisations issue
     - debian/patches/CVE-2022-48566.patch: make compare_digest more
       constant-time
     - CVE-2022-48566
   * SECURITY UPDATE: Incorrect parsing of email addresses containing special
     characters
     - debian/patches/CVE-2023-27043.patch: Fix email address parsing errors by
       adding optional 'strict' parameter to getaddresses() and parseaddr()
       functions
     - CVE-2023-27043
   * SECURITY UPDATE: TLS handshake bypass
     - debian/patches/CVE-2023-40217.patch: Check for & avoid the ssl
       pre-close flaw. Update SSL tests
     - CVE-2023-40217
                 
                
                    
                        Updated packages:
                    
                    
                        
                            - 
                                alt-python27_2.7.18-8_amd64.deb
                                
                                    sha:e025ff50059b31b5ece53b21186ca08ee44adc9f
                                
                             
                            - 
                                alt-python27-debug_2.7.18-8_amd64.deb
                                
                                    sha:571d1c5a51b29d9fc3a4f993fc90a4f4079f1ae0
                                
                             
                            - 
                                alt-python27-devel_2.7.18-8_amd64.deb
                                
                                    sha:57e89834ee79ca7f53c1bccead7b022710e7e02f
                                
                             
                            - 
                                alt-python27-idle_2.7.18-8_amd64.deb
                                
                                    sha:e65d51790775e7e92c82b954a8e704206e5caeae
                                
                             
                            - 
                                alt-python27-libs_2.7.18-8_amd64.deb
                                
                                    sha:4dda891f44e39744eb516d47f7fea374f8b0a661
                                
                             
                            - 
                                alt-python27-test_2.7.18-8_amd64.deb
                                
                                    sha:ec62585bc7bed1ccd58af893e4d831a77adac591
                                
                             
                            - 
                                alt-python27-tkinter_2.7.18-8_amd64.deb
                                
                                    sha:a12bdf7a720f789e7ae9b04f8b34235c3efc4521
                                
                             
                            - 
                                alt-python27-tools_2.7.18-8_amd64.deb
                                
                                    sha:c08e8d1344945a50cace5800cebcb5769c87a06b
                                
                             
                        
                     
                 
                
                    
                        Notes:
                    
                    
                        This page is generated automatically and has not been checked for errors. For clarification or
                        corrections please contact the 
CloudLinux Packaging Team.