[CLSA-2026:1786468462] python-setuptools: Fix of CVE-2026-59890
Type:
security
Severity:
Moderate
Release date:
2026-08-11 17:14:40 UTC
Description:
- CVE-2026-59890: normalize Unicode form (NFC) on both the MANIFEST.in pattern and the candidate path before matching, so an exclude directive cannot be bypassed by a decomposed (NFD) file name
CVEs fixed:
Updated packages:
  • python3-setuptools-53.0.0-12.el9.tuxcare.els2.noarch.rpm
    sha:3bc9dfe514c1e050218e219f7ef9ee35d456ac88bffaa3734e9499006b9f468a
  • python3-setuptools-wheel-53.0.0-12.el9.tuxcare.els2.noarch.rpm
    sha:6510084a28f5d8ad51cd946f08894c242de366817f40720dbb90d5e4b1d3015d
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.