Release date:
2026-07-29 12:11:04 UTC
Description:
- CVE-2022-40897: regex denial of service via crafted HTML in package_index
- CVE-2024-6345: remote code execution via command injection in VCS download functions
- CVE-2025-47273: path traversal in PackageIndex download filename resolution
Updated packages:
-
alt-python310-setuptools-58.3.0-5.el8.noarch.rpm
sha:b4907d5844159756031da39da7a6123ce6808e49313cbb66a55b1719e062baea
-
alt-python310-setuptools-wheel-58.3.0-5.el8.noarch.rpm
sha:3ea79502d2afe8a17817c9a441b7eaddb342cb9cd5318b7553a41681c1c4d693
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.