ALT-BU-2025-8973-1
Branch sisyphus update bulletin.
Package webapp-manager updated to version 1.4.0-alt1 for branch sisyphus in task 388814.
Closed bugs
webapp-manager: обновить до новой версии
Package python3-module-soundcard updated to version 0.4.4-alt2 for branch sisyphus in task 388840.
Closed bugs
python3-module-soundcard: ошибка импорта модуля
Package streamlink updated to version 7.4.0-alt1 for branch sisyphus in task 388871.
Closed bugs
Разрешить сборку lxml 6
Package python3-module-h11 updated to version 0.16.0-alt1 for branch sisyphus in task 388872.
Closed vulnerabilities
BDU:2025-06251
Уязвимость библиотеки h11, связанная с недостатками обработки HTTP-запросов, позволяющая нарушителю оказать влияние на конфиденциальность и целостность защищаемой информации
Modified: 2025-04-29
CVE-2025-43859
h11 is a Python implementation of HTTP/1.1. Prior to version 0.16.0, a leniency in h11's parsing of line terminators in chunked-coding message bodies can lead to request smuggling vulnerabilities under certain conditions. This issue has been patched in version 0.16.0. Since exploitation requires the combination of buggy h11 with a buggy (reverse) proxy, fixing either component is sufficient to mitigate this issue.
Closed bugs
CVE-2025-43859 in python-module-h11 0.14