Release date:
2026-07-27 10:29:57 UTC
Description:
- CVE-2022-40897: regex denial of service via crafted HTML in package_index
- CVE-2024-6345: remote code execution via command injection in VCS download functions
- CVE-2025-47273: path traversal in PackageIndex download filename resolution
Updated packages:
-
alt-python36-setuptools-38.5.2-9.el10.noarch.rpm
sha:eb254c33181413c7dc29419b833b6d0421110aad0ec9ca2c0b8a92b41372c2f8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.