[CLSA-2026:1772192033] python2: Fix of 2 CVEs
Type:
security
Severity:
Important
Release date:
2026-02-27 11:33:57 UTC
Description:
- CVE-2026-1299: raise exceptions for malformed input to prevent processing invalid or dangerous headers - CVE-2024-6923: encode newlines in headers and verify headers are sound
Updated packages:
  • python2-2.7.18-4.module_el8.4.0+2357+c9ab02ae.tuxcare.els20.x86_64.rpm
    sha:1d8b414459bcab1591dc96c636475fe51e00de3c9295019ce7899f185d40adb5
  • python2-debug-2.7.18-4.module_el8.4.0+2357+c9ab02ae.tuxcare.els20.x86_64.rpm
    sha:6e9c5a4e6ef58a3b3f9f362e860000b9bef5e4bb8a7e75ae0cb3a23981093c26
  • python2-devel-2.7.18-4.module_el8.4.0+2357+c9ab02ae.tuxcare.els20.x86_64.rpm
    sha:168b19e9b7e06873fdc9da04fc494b662cda642357bca6b8e172dc6ef4dcda01
  • python2-libs-2.7.18-4.module_el8.4.0+2357+c9ab02ae.tuxcare.els20.x86_64.rpm
    sha:edba5c18424c769c5850c39f2b7220280b98d41977c5f403e77019e184baa545
  • python2-test-2.7.18-4.module_el8.4.0+2357+c9ab02ae.tuxcare.els20.x86_64.rpm
    sha:653670e67afda53f83d658670fb433dac4dbcfd1c16d3d8b8ed5cff900bb079a
  • python2-tkinter-2.7.18-4.module_el8.4.0+2357+c9ab02ae.tuxcare.els20.x86_64.rpm
    sha:818bbe71fef21c99ea3c2782491b08480ccde9623ff9eeeed484e98d0ef84659
  • python2-tools-2.7.18-4.module_el8.4.0+2357+c9ab02ae.tuxcare.els20.x86_64.rpm
    sha:d44040ca0bd1ab56dc5033776b70803e786aee0a31cc3e7940eb5c5dc5a09b36
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.