Release Info

Advisory: CLSA-2026:1768480470

OS: TuxCare 9.6 ESU

Public date: 2026-01-15 12:34:32.906614

Project: python3.11

Version: 3.11.11-2.el9_6.2.tuxcare.els1

Errata link: https://errata.tuxcare.com/els_os/tuxcare9.6esu/CLSA-2026-1768480470.html

Changelog

- CVE-2025-13836: fixed memory exhaustion vulnerability when reading HTTP responses with malicious Content-Length headers

Update

Update command: dnf update python3.11*

Packages list

python3.11-3.11.11-2.el9_6.2.tuxcare.els1.i686.rpm python3.11-3.11.11-2.el9_6.2.tuxcare.els1.x86_64.rpm python3.11-debug-3.11.11-2.el9_6.2.tuxcare.els1.i686.rpm python3.11-debug-3.11.11-2.el9_6.2.tuxcare.els1.x86_64.rpm python3.11-devel-3.11.11-2.el9_6.2.tuxcare.els1.i686.rpm python3.11-devel-3.11.11-2.el9_6.2.tuxcare.els1.x86_64.rpm python3.11-idle-3.11.11-2.el9_6.2.tuxcare.els1.i686.rpm python3.11-idle-3.11.11-2.el9_6.2.tuxcare.els1.x86_64.rpm python3.11-libs-3.11.11-2.el9_6.2.tuxcare.els1.i686.rpm python3.11-libs-3.11.11-2.el9_6.2.tuxcare.els1.x86_64.rpm python3.11-test-3.11.11-2.el9_6.2.tuxcare.els1.i686.rpm python3.11-test-3.11.11-2.el9_6.2.tuxcare.els1.x86_64.rpm python3.11-tkinter-3.11.11-2.el9_6.2.tuxcare.els1.i686.rpm python3.11-tkinter-3.11.11-2.el9_6.2.tuxcare.els1.x86_64.rpm

CVEs

CVE-2025-13836