Release date:
2026-09-30 14:15:10 UTC
Description:
* SECURITY UPDATE: urllib: scope HTTPPasswordMgr and
HTTPPasswordMgrWithPriorAuth credentials by URL scheme, so credentials
registered for an https URI are no longer sent to the http URI of the
same host after a downgrade or redirect
- CVE-2026-15806
* SECURITY UPDATE: stringprep: pin every codepoint whose case mapping
changed after Unicode 3.2.0 in b3_exceptions (regenerated for this
interpreter's Unicode 16.0.0 database), so the idna codec no longer
applies post-3.2.0 case folding that RFC 3454 forbids
- CVE-2026-17084
Updated packages:
-
alt-python314_3.14.7-4_amd64.deb
sha:4b6c7ab0713c03c8e3fcb6943fe06db68f823cb7
-
alt-python314-debug_3.14.7-4_amd64.deb
sha:c5d6388cb6b5885d9c72226eaa073a8f8ae139e5
-
alt-python314-devel_3.14.7-4_amd64.deb
sha:cd6f8a1317d55a0ff84f9216a9d047d4da575b3c
-
alt-python314-idle_3.14.7-4_amd64.deb
sha:d0ecd4d69fbd93d6924c51d8b18c90e645fbcda1
-
alt-python314-libs_3.14.7-4_amd64.deb
sha:11da41c6c3fdb64a651c372cba5b0040825f8828
-
alt-python314-test_3.14.7-4_amd64.deb
sha:3867a88b2f8622b45cefa1fe6d223f7b0bbe492e
-
alt-python314-tkinter_3.14.7-4_amd64.deb
sha:505da813c38f63a7f91869551ecfa7d851def402
-
alt-python314_3.14.7-4_arm64.deb
sha:8709ee59828c431a4c97cdb5199ef043bb48b937
-
alt-python314-debug_3.14.7-4_arm64.deb
sha:1aebd2b1e895b65f1cb24e63a7a8817a5cc30692
-
alt-python314-devel_3.14.7-4_arm64.deb
sha:e5d73e8b31ac9818bb0dfd624392020547d57c07
-
alt-python314-idle_3.14.7-4_arm64.deb
sha:df57ff15c1e7dd4b27b1a828fd15b4751175c1d2
-
alt-python314-libs_3.14.7-4_arm64.deb
sha:5cab9218765e867ded48e27b52b268577ea6ce9e
-
alt-python314-test_3.14.7-4_arm64.deb
sha:0787d38767d71f0a8ef3558b5776c1018f704893
-
alt-python314-tkinter_3.14.7-4_arm64.deb
sha:64083e9c27ccb99faf69a1799bc1f0cd0a2f3d18
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.