Release date:
2026-08-25 14:10:32 UTC
Description:
- CVE-2026-0864: normalize CR and CRLF line endings to LF plus tab continuation
when ConfigParser writes multi-line values, so a carriage return inside an
attacker-controlled value can no longer inject extra keys and values into the
written configuration file
Updated packages:
-
python2-2.7.18-4.module_el8.4.0+2506+708fbb13.tuxcare.els27.x86_64.rpm
sha:836670ad709ddca5b537e9065d3a145b2651b32383e6b83f7e9a8a4e718dfc8a
-
python2-debug-2.7.18-4.module_el8.4.0+2506+708fbb13.tuxcare.els27.x86_64.rpm
sha:e43d7dde8a706a6d0300cba9074a7ab30806ec80e3b397f01fd570d88a7c809b
-
python2-devel-2.7.18-4.module_el8.4.0+2506+708fbb13.tuxcare.els27.x86_64.rpm
sha:51daaa8ee285ae2a5342acf7e7d292d6f0c8f3cfe044b73a88f584f473d1506a
-
python2-libs-2.7.18-4.module_el8.4.0+2506+708fbb13.tuxcare.els27.x86_64.rpm
sha:96c1f667bd8c17c456e2b09eda19ae3d5f53263500a5576c0b34452ed0ba905d
-
python2-test-2.7.18-4.module_el8.4.0+2506+708fbb13.tuxcare.els27.x86_64.rpm
sha:0a5d194341babfad18d4c6d98956f78926b93a7a06bbbfb1d04341fa1b673871
-
python2-tkinter-2.7.18-4.module_el8.4.0+2506+708fbb13.tuxcare.els27.x86_64.rpm
sha:73f337432b9124d2f3885e25236a5657f4a01e6122cc308c3993e55537e76882
-
python2-tools-2.7.18-4.module_el8.4.0+2506+708fbb13.tuxcare.els27.x86_64.rpm
sha:15b050805e24026e4198e18734d9573ba9e470305f2e8ef9d439407a621c43b8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.