[CLSA-2026:1776434301] alt-python36: Fix of CVE-2026-4519
Type:
security
Severity:
('Low', ['ELSLANG-26254'])
Release date:
2026-04-17 13:58:26 UTC
Description:
- CVE-2026-4519: reject leading dashes in webbrowser.open() URLs to prevent command-line option injection in browser subprocesses
Updated packages:
  • alt-python36-3.6.15-20.el7.x86_64.rpm
    sha:bf89bc18d22b154575bc9f0be93280c224889a1797eea14d22b18895d0226c45
  • alt-python36-debug-3.6.15-20.el7.x86_64.rpm
    sha:a6b2a096d34db6e26d5bfb5477228ff9a1f24572d7a1a9a2ba9057722b494e04
  • alt-python36-devel-3.6.15-20.el7.x86_64.rpm
    sha:68328244b28028152d36df42a25f0fe193c90a712082aa865422893b2b95b915
  • alt-python36-libs-3.6.15-20.el7.x86_64.rpm
    sha:f96c2d6c7f23959ee9095bf67d23328663fdf8cb5264fa95c7b7aef0acc26ac6
  • alt-python36-test-3.6.15-20.el7.x86_64.rpm
    sha:4afca5f3a03999cf3db0c0ed4944112c6be6ed4a810b9f613feab8610c5d3442
  • alt-python36-tkinter-3.6.15-20.el7.x86_64.rpm
    sha:6ea40ffd0cd49241a5b08befaec728defa14c68f392a88aedb05ad9dedfc132d
  • alt-python36-tools-3.6.15-20.el7.x86_64.rpm
    sha:6725735c57b3dc361b9ba6469704befd0281f8d4a458d41120107f32be91a45a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.