Skip to main content

LTS Security Backport for Python 3.7. Fixes CVE-2025-66471, CVE-2025-66418, CVE-2025-50181, CVE-2024-37891.

Project description

urllib3-lts-py37 🛡️

Security Backport for Python 3.7 Base: urllib3 v2.0.7 | Patch Level: 2025.66471

🚨 Security Fixes Included

This release backports fixes for 4 Critical/High/Moderate Vulnerabilities found in the official v2.0.7 release.

CVE ID Severity Description Status
CVE-2025-66471 🔴 HIGH Compression Bomb DoS: Added max_length limits to decompression. 🛡️ FIXED
CVE-2025-66418 🔴 HIGH Unbounded Links: Limited decompression chain depth. 🛡️ FIXED
CVE-2025-50181 🟡 MOD Redirect Bypass: Fixed retry logic when redirects disabled. 🛡️ FIXED
CVE-2024-37891 🟡 MOD Header Leak: Strips Proxy-Authorization on redirect. 🛡️ FIXED

📦 Installation

pip install urllib3-lts-py37==2025.66471

🌐 The OmniPKG Ecosystem

Maintained by 1minds3t.

Manage your environment:

pip install omnipkg
omnipkg reset -y

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

urllib3_lts_py37-2025.66471.tar.gz (151.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

urllib3_lts_py37-2025.66471-py3-none-any.whl (123.9 kB view details)

Uploaded Python 3

File details

Details for the file urllib3_lts_py37-2025.66471.tar.gz.

File metadata

  • Download URL: urllib3_lts_py37-2025.66471.tar.gz
  • Upload date:
  • Size: 151.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.7

File hashes

Hashes for urllib3_lts_py37-2025.66471.tar.gz
Algorithm Hash digest
SHA256 bd170d818fd74f6607ee16963e8875e0d0ba257ed751368bd74a4adc6ff8add9
MD5 b71d8983ee2d83b3e1b9755338520990
BLAKE2b-256 03a125d1094ee74aa29333933dcc54fb38ac76ef061ec9ba042ade826b1e7847

See more details on using hashes here.

Provenance

The following attestation bundles were made for urllib3_lts_py37-2025.66471.tar.gz:

Publisher: publish.yml on 1minds3t/urllib3-lts

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file urllib3_lts_py37-2025.66471-py3-none-any.whl.

File metadata

File hashes

Hashes for urllib3_lts_py37-2025.66471-py3-none-any.whl
Algorithm Hash digest
SHA256 89a1361ae5fe0753a20a1a52d2d146a522852d7ad04bc061d03831ce61c512ca
MD5 9f76cb73af8d4be0116516eb78f8fa92
BLAKE2b-256 eccf505f7773e06acdcd91cb2c008887b1974aab862972a18cc1a03a29085d86

See more details on using hashes here.

Provenance

The following attestation bundles were made for urllib3_lts_py37-2025.66471-py3-none-any.whl:

Publisher: publish.yml on 1minds3t/urllib3-lts

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page