[CLSA-2026:1790757959] alt-python312: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-09-30 08:46:11 UTC
Description:
- CVE-2026-15806: scope urllib HTTPPasswordMgr credentials by URL scheme, so credentials registered for https:// are no longer sent to http://. - CVE-2026-17084: regenerate stringprep's b3_exceptions table so the idna codec no longer applies post-Unicode-3.2.0 case mappings.
Updated packages:
  • alt-python312-3.12.14-8.el8.x86_64.rpm
    sha:56ce0f4e01bb0beaa39624049b58286c49f4f7574e1fa6a2e2cb4ebedc865a68
  • alt-python312-debug-3.12.14-8.el8.x86_64.rpm
    sha:d7e4e4e82127b7339b078dae7b6a901c7a5cf473717914170a9b3f749f48e4c8
  • alt-python312-devel-3.12.14-8.el8.x86_64.rpm
    sha:4ae396a26c598de638132fe3523f8b0c918d7cf73151bd8eef4d7d93fb4a4093
  • alt-python312-idle-3.12.14-8.el8.x86_64.rpm
    sha:52fa3313c38a16179a238a936d3ff6ae274905815dc97f006f3cfdb99a2ab8e1
  • alt-python312-libs-3.12.14-8.el8.x86_64.rpm
    sha:254c5e25f1f9a4aeec1a556d5d05ecf14d849834e696afbd619a120ddf8ce47e
  • alt-python312-test-3.12.14-8.el8.x86_64.rpm
    sha:58ac707acd529df7bac32ee59f822f783b4f7255736e8ae0fef804e63f5b269b
  • alt-python312-tkinter-3.12.14-8.el8.x86_64.rpm
    sha:e371a763d9d39994c8995e99fd1c6ce562f9fd4b2eb2c2620649690904656c4d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.