[CLSA-2026:1790786599] alt-python39: Fix of 2 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-09-30 16:43:32 UTC
Description:
- CVE-2026-15806: scope urllib.request HTTPPasswordMgr credentials by URL scheme so credentials registered for https:// are not sent over http://. - CVE-2026-17084: regenerate Lib/stringprep.py so the idna codec no longer applies case mappings from outside Unicode 3.2.0.
Updated packages:
  • alt-python39-3.9.23-30.el9.x86_64.rpm
    sha:d32221f0c8b90479ece2170f5942e26fb6bcea31feef6a3010244bba1d4f7b4d
  • alt-python39-debug-3.9.23-30.el9.x86_64.rpm
    sha:51e7d592ad933e496bad51a9b17d9b1abb41cb71a55c49c8580bd176c1aa643a
  • alt-python39-devel-3.9.23-30.el9.x86_64.rpm
    sha:e814f9f03650ea88ce44bfab1e809b0fa59868c8b8cdae54e1d1798cd87d7b86
  • alt-python39-idle-3.9.23-30.el9.x86_64.rpm
    sha:4b5b055e0f65f5b49d953744bd3f51590f28e15545ce354bf46ff24e839eb073
  • alt-python39-libs-3.9.23-30.el9.x86_64.rpm
    sha:b9855150d54d5064737c6e469e18ed25f9a7e6ba56865051008c802563736cc2
  • alt-python39-test-3.9.23-30.el9.x86_64.rpm
    sha:576995ef84bb8f865704e988fe5d0bca09bad443389a91649b9bd19f013816e4
  • alt-python39-tkinter-3.9.23-30.el9.x86_64.rpm
    sha:318f09320bef5c2071eb6d17e8006f5a79006c0c84d6a9ab7e754ec9400bd6af
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.