Release date:
2026-07-29 12:46:21 UTC
Description:
- CVE-2022-40897: regex denial of service via crafted HTML in package_index
- CVE-2024-6345: remote code execution via command injection in VCS download functions
- CVE-2025-47273: path traversal in PackageIndex download filename resolution
Updated packages:
-
alt-python310-setuptools-58.3.0-5.el10.noarch.rpm
sha:2a64da0010c0a7509a0c9854f5a9e38f8f3b4fd2935c752b2197119e8988293f
-
alt-python310-setuptools-wheel-58.3.0-5.el10.noarch.rpm
sha:312d2425c0a156650647e5f925b362cac7cc5fda4483cad2b1bf717750bbe4d4
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.