Release date:
2026-09-07 15:16:13 UTC
Description:
- CVE-2026-0864: fix configuration injection in the ConfigParser module by
normalizing all line endings (CR, CRLF and LF) to LF+TAB when writing
multi-line values, so a carriage return in an attacker-controlled value
can no longer inject unexpected keys and values into the written file
Updated packages:
-
python-2.6.6-70.el6.tuxcare.els29.i686.rpm
sha:c1fd92f0633882b13d43ebe2ccb6f0ecedf8cf919cf66708d1f8d3093c005628
-
python-2.6.6-70.el6.tuxcare.els29.x86_64.rpm
sha:6d72014455dd1061eb4c55ce2fd60a82c10cafb90ac66d78512bcfe78403a633
-
python-devel-2.6.6-70.el6.tuxcare.els29.i686.rpm
sha:ed45e0c39eaeefc9862ab998c6c12ae0acd304a3987fff577638b2a929005e8e
-
python-devel-2.6.6-70.el6.tuxcare.els29.x86_64.rpm
sha:8ea9acf2d692df39bd55b64183b5d4de45cd8b2e02664a4b5f768bf88165c8a1
-
python-libs-2.6.6-70.el6.tuxcare.els29.i686.rpm
sha:45593e4b48e3e0e02378a047eb644475d55bacf2c7f2d09d8c1552e04a0b58b9
-
python-libs-2.6.6-70.el6.tuxcare.els29.x86_64.rpm
sha:379747e4bcc2f3a8964a3a860ef2c927f1775ca80f8016f549f4dae4c1240356
-
python-test-2.6.6-70.el6.tuxcare.els29.x86_64.rpm
sha:c822bb5469c70274bd4fc44af3477c5140af06d697c491ba6de17e2991d30a15
-
python-tools-2.6.6-70.el6.tuxcare.els29.x86_64.rpm
sha:89be25444973dd387808ee190a33de0a5a94459517eabebfe8a2b87527949f26
-
tkinter-2.6.6-70.el6.tuxcare.els29.x86_64.rpm
sha:dd2afd33a9128256e73f81cea63fe2681892b0026245a937274142d20b806a1b
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.