[CLSA-2026:1790764321] alt-python312: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-09-30 10:32:13 UTC
Description:
- CVE-2026-15806: scope urllib HTTPPasswordMgr credentials by URL scheme, so credentials registered for https:// are no longer sent to http://. - CVE-2026-17084: regenerate stringprep's b3_exceptions table so the idna codec no longer applies post-Unicode-3.2.0 case mappings.
Updated packages:
  • alt-python312-3.12.14-8.el10.x86_64.rpm
    sha:eb8e991294d1aea0789da554f3b478ba36bda0da3e42ca82559d478b74cb5036
  • alt-python312-debug-3.12.14-8.el10.x86_64.rpm
    sha:19e801389a7653b0e78ef811bbe80c448cfa3173fc903964b3091f7debe7e35e
  • alt-python312-devel-3.12.14-8.el10.x86_64.rpm
    sha:8523f7acf725b4ef379ebde563637e8b340c844f88e46b43a4e3f7e2f9e53456
  • alt-python312-idle-3.12.14-8.el10.x86_64.rpm
    sha:20af62aeed845cccaa244e5f3343956d443c3c69d890c755e96428394113651d
  • alt-python312-libs-3.12.14-8.el10.x86_64.rpm
    sha:c5da2fcf958bced56af03640f66e6d32c88a98cfe5d4cbd7dbad0963f5640dea
  • alt-python312-test-3.12.14-8.el10.x86_64.rpm
    sha:eff3129c7381d4bd05aad82e58d81b871d8bea9bd4db743dbbcd81c29961f91b
  • alt-python312-tkinter-3.12.14-8.el10.x86_64.rpm
    sha:a91bec011e72221e8fecfdc479e76e9aa955bea9776b8e8141341332d5a6de2f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.