[CLSA-2026:1790778912] alt-python314: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-09-30 14:35:26 UTC
Description:
- CVE-2026-15806: urllib: scope HTTPPasswordMgr credentials by URL scheme so https credentials are not sent over http. - CVE-2026-17084: stringprep: pin post-Unicode-3.2.0 case mappings in b3_exceptions so the idna codec follows RFC 3454.
Updated packages:
  • alt-python314-3.14.7-3.el7.x86_64.rpm
    sha:f84d8568dcf9746800a9ae92198560b4fa5cbf4bef5b5ce920e251b1a3088735
  • alt-python314-debug-3.14.7-3.el7.x86_64.rpm
    sha:5695f2b5f4b9dc839248f7195d74cbfb54dba69efa560483f7f7524e90e18b7a
  • alt-python314-devel-3.14.7-3.el7.x86_64.rpm
    sha:2ac8380ab5634d34aa30641227dc544d5ae24c2c4f596a77ac70f9fcac501b1a
  • alt-python314-idle-3.14.7-3.el7.x86_64.rpm
    sha:3dc75cecac709f194026198c82ce4258fea7e5422fd1167ada7e51af5ea4f29a
  • alt-python314-libs-3.14.7-3.el7.x86_64.rpm
    sha:d9206e5d2eafa8174aa775b6bac1189f0a4df6f618b2a38b079997d8a9465a25
  • alt-python314-test-3.14.7-3.el7.x86_64.rpm
    sha:6f5122d54e7fa61a17aa20fd7f7631b3014fede15845aae9e49aceadeff5aae9
  • alt-python314-tkinter-3.14.7-3.el7.x86_64.rpm
    sha:20e507dcc4487781e16744d8e5e88e6f4c3d98d659d6b474bacea906c745d3f3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.