Описание
ELSA-2026-36732: python-urllib3 security update (MODERATE)
[1.24.2-10]
- Security fix for CVE-2026-44431 Resolves: RHEL-184858
Обновленные пакеты
Oracle Linux 8
Oracle Linux aarch64
python3-urllib3
1.24.2-10.el8_10
Oracle Linux x86_64
python3-urllib3
1.24.2-10.el8_10
Связанные CVE
Связанные уязвимости
urllib3 is an HTTP client library for Python. From 1.23 to before 2.7.0, cross-origin redirects followed from the low-level API via ProxyManager.connection_from_url().urlopen(..., assert_same_host=False) still forward these sensitive headers. This vulnerability is fixed in 2.7.0.
urllib3 is an HTTP client library for Python. From 1.23 to before 2.7.0, cross-origin redirects followed from the low-level API via ProxyManager.connection_from_url().urlopen(..., assert_same_host=False) still forward these sensitive headers. This vulnerability is fixed in 2.7.0.
urllib3 is an HTTP client library for Python. From 1.23 to before 2.7.0, cross-origin redirects followed from the low-level API via ProxyManager.connection_from_url().urlopen(..., assert_same_host=False) still forward these sensitive headers. This vulnerability is fixed in 2.7.0.
urllib3: Sensitive headers forwarded across origins in proxied low-level redirects
urllib3 is an HTTP client library for Python. From 1.23 to before 2.7. ...