CVE-2026-24049

Advisory

ALSA-2026:1902

Important: python-wheel security update

ecosystem: alma:10

Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * wheel: wheel: Privilege Escalation or Arbitrary Code Execution via malicious wheel file unpacking (CVE-2026-24049) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

published: 2026-02-04 00:00:00

modified: 2026-02-05 09:52:44

Vulnerability

CVE-2026-24049

CVE-2026-24049

ecosystem: alma:10

References

Detection

alma:10
ALSA-2026:1902

alma-errata

OR

fixed

rpm

python3-wheel

package type: binary

Architectures

  • noarch

Affected version range

  • less than

    1:0.41.2-5.el10_1.1

  • fixed

    1:0.41.2-5.el10_1.1

type: version
fixed

rpm

python3-wheel-wheel

package type: binary

Architectures

  • noarch

Affected version range

  • less than

    1:0.41.2-5.el10_1.1

  • fixed

    1:0.41.2-5.el10_1.1

type: version
alma:9
ALSA-2026:1939

alma-errata

OR

fixed

rpm

python3.12-wheel

package type: binary

Architectures

  • noarch

Affected version range

  • less than

    0:0.41.2-3.el9_7.1

  • fixed

    0:0.41.2-3.el9_7.1

type: version
fixed

rpm

python3.12-wheel-wheel

package type: binary

Architectures

  • noarch

Affected version range

  • less than

    0:0.41.2-3.el9_7.1

  • fixed

    0:0.41.2-3.el9_7.1

type: version
alma:8
ALSA-2026:2090

alma-errata

OR

fixed

rpm

python3.12-wheel

package type: binary

Architectures

  • noarch

Affected version range

  • less than

    0:0.41.2-4.el8_10

  • fixed

    0:0.41.2-4.el8_10

type: version
fixed

rpm

python3.12-wheel-wheel

package type: binary

Architectures

  • noarch

Affected version range

  • less than

    0:0.41.2-4.el8_10

  • fixed

    0:0.41.2-4.el8_10

type: version

Data Sources

  • AlmaLinux Errata

    alma-errata

VulsFutureVuls|GitHub Logo IconGitHub