[CLSA-2025:1760370140] Fix CVE(s): CVE-2020-26116, CVE-2020-8492
Type:
security
Severity:
Important
Release date:
2025-10-13 15:42:24 UTC
Description:
* SECURITY UPDATE: DoS in regular expression because of urllib.request.AbstractBasicAuthHandler catastrophic backtracking - debian/patches/CVE-2020-8492.patch: fix DoS in the urllib regexp - CVE-2020-8492 * SECURITY UPDATE: a header injection vulnerability for http methods in the httplib - debian/patches/CVE-2020-26116.patch: prevent header injection in http methods in httplib - CVE-2020-26116
Updated packages:
  • alt-python27_2.7.18-7_amd64.deb
    sha:3d0dc5276774bc7497d714b0598b9ee7b233a11c
  • alt-python27-debug_2.7.18-7_amd64.deb
    sha:8215efe0abfb15234a6a9e013da248a406457bca
  • alt-python27-devel_2.7.18-7_amd64.deb
    sha:3cf721efc78ebe196895a9ce14f53d28be3498f3
  • alt-python27-idle_2.7.18-7_amd64.deb
    sha:8c2a036a4dcc234aa5fab65aa3d8cf6877bb4c60
  • alt-python27-libs_2.7.18-7_amd64.deb
    sha:6413bfc79d17b24b47d766a8fa038632e61f70db
  • alt-python27-test_2.7.18-7_amd64.deb
    sha:92663cb1ace97746263e308b83064d40523e503c
  • alt-python27-tkinter_2.7.18-7_amd64.deb
    sha:0067c41e662d0b81dcedfef89e8ecb7afeee8dc9
  • alt-python27-tools_2.7.18-7_amd64.deb
    sha:55fb7946366da64e2ac0591691e80a3b95151d4b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.