shield Security update for python-urllib3
SUSE-SLE-Module-Python3-15-SP7-2026-3397


This update for python-urllib3 fixes the following issue - CVE-2026-9375: decompression bomb bypass in the streaming API when using Brotli support can lead to a denial of service (bsc#1268683).

  • Release Date
    Jul 28 2026
  • References
    Bugzilla: 1268683
    CVEs: CVE-2026-9375
  • Type
    security
  • Severity
    moderate

cloud_download Downloads

Python 3 Module 15.7 ppc64le
  • Packages
    python-urllib3
    HTTP library with thread-safe connection pooling, file post, and more
    2.0.7-150400.7.33.1 lock src
    python311-urllib3
    HTTP library with thread-safe connection pooling, file post, and more
    2.0.7-150400.7.33.1 lock rpm
Python 3 Module 15.7 s390x
  • Packages
    python-urllib3
    HTTP library with thread-safe connection pooling, file post, and more
    2.0.7-150400.7.33.1 lock src
    python311-urllib3
    HTTP library with thread-safe connection pooling, file post, and more
    2.0.7-150400.7.33.1 lock rpm
Python 3 Module 15.7 aarch64
  • Packages
    python-urllib3
    HTTP library with thread-safe connection pooling, file post, and more
    2.0.7-150400.7.33.1 lock src
    python311-urllib3
    HTTP library with thread-safe connection pooling, file post, and more
    2.0.7-150400.7.33.1 lock rpm
Python 3 Module 15.7 x86_64
  • Packages
    python-urllib3
    HTTP library with thread-safe connection pooling, file post, and more
    2.0.7-150400.7.33.1 lock src
    python311-urllib3
    HTTP library with thread-safe connection pooling, file post, and more
    2.0.7-150400.7.33.1 lock rpm