Release date:
2026-10-02 07:35:21 UTC
Description:
- CVE-2022-40897: regex denial of service via crafted HTML in package_index
- CVE-2024-6345: remote code execution via command injection in VCS download functions
- CVE-2025-47273: path traversal in PackageIndex download filename resolution
Updated packages:
-
alt-python38-setuptools-58.3.0-3.el10.noarch.rpm
sha:a6ab283eba73a338095feeff435b0988f6f13d6f70c01db7e5f063ed33881270
-
alt-python38-setuptools-wheel-58.3.0-3.el10.noarch.rpm
sha:e2f4ea5c294131d1d6db087f1b9c599728e900ad7c2270d8594fc05cb9e0aaa7
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.