[CLSA-2026:1790782483] alt-python313: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-09-30 15:34:58 UTC
Description:
- CVE-2026-15806: scope urllib.request HTTPPasswordMgr credentials by URL scheme so credentials registered for https:// are not sent over http://. - CVE-2026-17084: regenerate Lib/stringprep.py so the idna codec no longer applies case mappings from outside Unicode 3.2.0.
Updated packages:
  • alt-python313-3.13.15-5.el9.x86_64.rpm
    sha:eb0dac913f1bf48ad9a320b1510a5bcceb2971c3c6ef17436af0951eca0bbce6
  • alt-python313-debug-3.13.15-5.el9.x86_64.rpm
    sha:a591ac7903efd033d54e92f0353c7148b1161b7805f5485101fd4893160b4fb7
  • alt-python313-devel-3.13.15-5.el9.x86_64.rpm
    sha:67c76bf5f66f5e7a1be7079aa30b2d0c7f68b0f08fd909a1bee04a368217f982
  • alt-python313-idle-3.13.15-5.el9.x86_64.rpm
    sha:a49e886f7b396fbf5ecef022fea0c6cd0e38bc51836ecdb8568457c1f21fd309
  • alt-python313-libs-3.13.15-5.el9.x86_64.rpm
    sha:9ba3a3662cbfe394c935332dbb07a2e7406737929de2468788427e6ec520aff1
  • alt-python313-test-3.13.15-5.el9.x86_64.rpm
    sha:15642172fada83a9d435391b8a885ed809f30ab0184f25102db7d7ee0baf67f3
  • alt-python313-tkinter-3.13.15-5.el9.x86_64.rpm
    sha:4fdd7645098f4fc4c1e604e9ec7e5df621a1fdc76c6c80074be6e65d5907223e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.