Release Info

Advisory: CLSA-2025:1760369318

OS: Ubuntu 22.04

Public date: 2025-10-13 15:28:41.069454

Project: python

Version: 2.7.18-7

Errata link: https://errata.tuxcare.com/els_alt_python/ubuntu22.04/CLSA-2025-1760369318.html

Changelog

* SECURITY UPDATE: DoS in regular expression because of urllib.request.AbstractBasicAuthHandler catastrophic backtracking - debian/patches/CVE-2020-8492.patch: fix DoS in the urllib regexp - CVE-2020-8492 * SECURITY UPDATE: a header injection vulnerability for http methods in the httplib - debian/patches/CVE-2020-26116.patch: prevent header injection in http methods in httplib - CVE-2020-26116

Update

Update command: apt-get update apt-get --only-upgrade install alt-python*

Packages list

alt-python27_2.7.18-7_amd64.deb alt-python27-debug_2.7.18-7_amd64.deb alt-python27-devel_2.7.18-7_amd64.deb alt-python27-idle_2.7.18-7_amd64.deb alt-python27-libs_2.7.18-7_amd64.deb alt-python27-test_2.7.18-7_amd64.deb alt-python27-tkinter_2.7.18-7_amd64.deb alt-python27-tools_2.7.18-7_amd64.deb

CVEs

CVE-2020-8492
CVE-2020-26116