Release date:
2026-07-29 13:16:22 UTC
Description:
- CVE-2022-40897: regex denial of service via crafted HTML in package_index
- CVE-2024-6345: remote code execution via command injection in VCS download functions
- CVE-2025-47273: path traversal in PackageIndex download filename resolution
Updated packages:
-
alt-python310-setuptools-58.3.0-5.el9.noarch.rpm
sha:0193024869d50fc853a9a0b5a429f1ad1b1dc83eca411405e7d52a85fc6ec209
-
alt-python310-setuptools-wheel-58.3.0-5.el9.noarch.rpm
sha:d2945c1f12c53a008265803bb0a65be19f7c58a32755a444e0de0f32958aaba5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.