shield
Security update for python-aiohttp
SUSE-SLE-Module-Python3-15-SP7-2026-4031
This update for python-aiohttp fixes the following issues: - CVE-2026-59881: excessive resource consumption due to WebSocket client accepting compressed frames without negotiated permessage-deflate (bsc#1273125). - CVE-2026-69243: HTTP request smuggling via the WebSocket upgrade procedure (bsc#1273553). - CVE-2026-69244: out-of-bounds heap read in the C response parser while building an error message for a malformed response (bsc#1273552).
-
Release DateSep 7 2026
-
References
-
Typesecurity
-
Severitymoderate
cloud_download Downloads
To download packages, you need to log in and have a valid subscription.
Python 3 Module 15.7 ppc64le
-
Packagespython-aiohttp
Asynchronous HTTP client/server frameworkpython311-aiohttp3.9.3-150400.10.46.1 lock src
Asynchronous HTTP client/server framework3.9.3-150400.10.46.1 lock rpm
Python 3 Module 15.7 aarch64
-
Packagespython-aiohttp
Asynchronous HTTP client/server frameworkpython311-aiohttp3.9.3-150400.10.46.1 lock src
Asynchronous HTTP client/server framework3.9.3-150400.10.46.1 lock rpm
Python 3 Module 15.7 s390x
-
Packagespython-aiohttp
Asynchronous HTTP client/server frameworkpython311-aiohttp3.9.3-150400.10.46.1 lock src
Asynchronous HTTP client/server framework3.9.3-150400.10.46.1 lock rpm
Python 3 Module 15.7 x86_64
-
Packagespython-aiohttp
Asynchronous HTTP client/server frameworkpython311-aiohttp3.9.3-150400.10.46.1 lock src
Asynchronous HTTP client/server framework3.9.3-150400.10.46.1 lock rpm