Release date:
2026-07-29 12:35:10 UTC
Description:
- CVE-2022-40897: regex denial of service via crafted HTML in package_index
- CVE-2024-6345: remote code execution via command injection in VCS download functions
- CVE-2025-47273: path traversal in PackageIndex download filename resolution
Updated packages:
-
alt-python310-setuptools-58.3.0-5.el7.noarch.rpm
sha:3eb0baac5f1dc20ff4758aea0324c1b8e8e53a97577b93afac71f2aa9eeac294
-
alt-python310-setuptools-wheel-58.3.0-5.el7.noarch.rpm
sha:7cf48f0f0488b8301e2cb979a7fd9189ba16cbdbd5ddd754f8e7b6708836de3e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.