Skip to content
Ubuntu Python Critical Denial of Service and Code Execution Vuln USN-8744

Ubuntu Python Critical Denial of Service and Code Execution Vuln USN-8744

Linuxsecurity LinuxSecurity Advisories September 10, 2026

Keep your Linux systems secure and up to date with practical patching guidance. Review Linux Patching Best Practices ×

Several security issues were fixed in Python. Software Description: - python3.14: An interactive high-level object-oriented language - python3.12: An interactive high-level object-oriented language - python2.7: An interactive high-level object-oriented language - python3.10: An interactive high-level object-oriented language - python3.11: An interactive high-level object-oriented language - python3.8: An interactive high-level object-oriented language - python3.9: An interactive high-level object-oriented language - python3.6: An interactive high-level object-oriented language - python3.7: An interactive high-level object-oriented language - python3.5: An interactive high-level object-oriented language - python3.4: An interactive high-level object-oriented language Details: It was discovered that Python's http.cookies module incorrectly handled control characters in certain cookie operations. An attacker could possibly use this issue to inject arbitrary content. This issue only ... Read the Full Advisory

Several security issues were fixed in Python.

Software Description:

- python3.14: An interactive high-level object-oriented language

- python3.12: An interactive high-level object-oriented language

- python2.7: An interactive high-level object-oriented language

- python3.10: An interactive high-level object-oriented language

- python3.11: An interactive high-level object-oriented language

- python3.8: An interactive high-level object-oriented language

- python3.9: An interactive high-level object-oriented language

- python3.6: An interactive high-level object-oriented language

- python3.7: An interactive high-level object-oriented language

- python3.5: An interactive high-level object-oriented language

- python3.4: An interactive high-level object-oriented language

It was discovered that Python's http.cookies module incorrectly handled

control characters in certain cookie operations. An attacker could possibly

use this issue to inject arbitrary content. This issue only ...

The problem can be corrected by updating your system to the following package versions: Ubuntu 26.04 LTS libpython3.14 3.14.4-1ubuntu0.2 python3.14 3.14.4-1ubuntu0.2 Ubuntu 24.04 LTS libpython3.12t64 3.12.3-1ubuntu0.17 python3.12 3.12.3-1ubuntu0.17 Ubuntu 22.04 LTS libpython2.7 2.7.18-13ubuntu1.5+esm9 Available with Ubuntu Pro libpython3.10 3.10.12-1~22.04.18 libpython3.11 3.11.0~rc1-1~22.04.1+esm2 Available with Ubuntu Pro python2.7 2.7.18-13ubuntu1.5+esm9 Available with Ubuntu Pro python3.10 3.10.12-1~22.04.18 python3.11 3.11.0~rc1-1~22.04.1+esm2 Available with Ubuntu Pro Ubuntu 20.04 LTS libpython2.7 2.7.18-1~20.04.7+esm10 Available with Ubuntu Pro libpython3.8 3.8.10-0ubuntu1~20.04.18+esm7 Available with Ubuntu Pro libpython3.9 3.9.5-3ubuntu0~20.04.1+esm11 Available with Ubuntu Pro python2.7 2.7.18-1~20.04.7+esm10 Available with Ubuntu Pro python3.8 3.8.10-0ubuntu1~20.04.18+esm7 Available with Ubuntu Pro python3.9 3.9.5-3ubuntu0~20.04.1+esm11 Available with Ubuntu Pro Ubuntu 18.04 LTS libpython2.7 2.7.17-1~18.04ubuntu1.13+esm15 Available with Ubuntu Pro libpython3.6 3.6.9-1~18.04ubuntu1.13+esm10 Available with Ubuntu Pro libpython3.7 3.7.5-2ubuntu1~18.04.2+esm11 Available with Ubuntu Pro libpython3.8 3.8.0-3ubuntu1~18.04.2+esm11 Available with Ubuntu Pro python2.7 2.7.17-1~18.04ubuntu1.13+esm15 Available with Ubuntu Pro python3.6 3.6.9-1~18.04ubuntu1.13+esm10 Available with Ubuntu Pro python3.7 3.7.5-2ubuntu1~18.04.2+esm11 Available with Ubuntu Pro python3.8 3.8.0-3ubuntu1~18.04.2+esm11 Available with Ubuntu Pro Ubuntu 16.04 LTS libpython2.7 2.7.12-1ubuntu0~16.04.18+esm22 Available with Ubuntu Pro libpython3.5 3.5.2-2ubuntu0~16.04.13+esm25 Available with Ubuntu Pro python2.7 2.7.12-1ubuntu0~16.04.18+esm22 Available with Ubuntu Pro python3.5 3.5.2-2ubuntu0~16.04.13+esm25 Available with Ubuntu Pro Ubuntu 14.04 LTS libpython2.7 2.7.6-8ubuntu0.6+esm30 Available with Ubuntu Pro libpython3.4 3.4.3-1ubuntu1~14.04.7+esm21 Available with Ubuntu Pro libpython3.5 3.5.2-2ubuntu0~16.04.4~14.04.1+esm11 Available with Ubuntu Pro python2.7 2.7.6-8ubuntu0.6+esm30 Available with Ubuntu Pro python3.4 3.4.3-1ubuntu1~14.04.7+esm21 Available with Ubuntu Pro python3.5 3.5.2-2ubuntu0~16.04.4~14.04.1+esm11 Available with Ubuntu Pro In general, a standard system update will make all the necessary changes.

CVE-2026-15308, CVE-2026-3644, CVE-2026-4224, CVE-2026-4360,

Ubuntu Security Notice USN-8744-1

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Linux Security - Your source for Top Linux News, Advisories, HOWTOs and Feature Releases

Extracted Entities

Attack Types (2)

Companies (1)

CWE Weaknesses (1)

Platforms (1)