[CLSA-2026:1785244480] alt-python311-setuptools: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2026-07-28 13:14:53 UTC
Description:
- CVE-2024-6345: remote code execution via command injection in VCS download functions - CVE-2025-47273: path traversal in PackageIndex download filename resolution
Updated packages:
  • alt-python311-setuptools-65.6.3-4.el10.noarch.rpm
    sha:5f04582e92b5433c1784f8baf0e3381a00a429d6c7c079093809dac102f849d1
  • alt-python311-setuptools-wheel-65.6.3-4.el10.noarch.rpm
    sha:26d65ad2f113c20a9b4efb57d503a164a18b64028293f576303fa7b106493fab
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.