Skip to main content

Python 3.8 urllib3 with CVE-2025-66471 security patches

Project description

urllib3-lts-py38 🛡️

Security Backport for Python 3.8 Base: urllib3 v2.2.3 | Patch Level: 2025.66471

🚨 Security Fixes Included

This release backports fixes for 4 Critical/High/Moderate Vulnerabilities found in the official v2.2.3 release.

CVE ID Severity Description Status
CVE-2025-66471 🔴 HIGH Compression Bomb DoS: Added max_length limits to decompression. 🛡️ FIXED
CVE-2025-66418 🔴 HIGH Unbounded Links: Limited decompression chain depth. 🛡️ FIXED
CVE-2025-50182 🟡 MOD Node.js Bypass: Enforced manual redirects in emscripten. 🛡️ FIXED
CVE-2025-50181 🟡 MOD Redirect Bypass: Fixed retry logic when redirects disabled. 🛡️ FIXED

📦 Installation

pip install urllib3-lts-py38==2025.66471

🌐 The OmniPKG Ecosystem

Maintained by 1minds3t.

Manage your environment:

pip install omnipkg
omnipkg reset -y

⚠️ Installation Warning

Uninstall urllib3 before installing this package:

pip uninstall urllib3 -y
pip install urllib3-lts-py38

This ensures the security patches are applied and not overwritten.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

urllib3_lts_py38-2025.66471.2.tar.gz (155.0 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

urllib3_lts_py38-2025.66471.2-py3-none-any.whl (124.5 kB view details)

Uploaded Python 3

File details

Details for the file urllib3_lts_py38-2025.66471.2.tar.gz.

File metadata

  • Download URL: urllib3_lts_py38-2025.66471.2.tar.gz
  • Upload date:
  • Size: 155.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.7

File hashes

Hashes for urllib3_lts_py38-2025.66471.2.tar.gz
Algorithm Hash digest
SHA256 fcc5cf13f5379c69f72f84487f57b1fa3ae0870785296fc42fe4ea8cec403bf9
MD5 002366fcfb8efa7ea665c345104b466e
BLAKE2b-256 83edaeee9311101f68abc5b367d63d7fd1735d69df7b2e764dc8f48de34a01a2

See more details on using hashes here.

Provenance

The following attestation bundles were made for urllib3_lts_py38-2025.66471.2.tar.gz:

Publisher: publish.yml on 1minds3t/urllib3-lts

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file urllib3_lts_py38-2025.66471.2-py3-none-any.whl.

File metadata

File hashes

Hashes for urllib3_lts_py38-2025.66471.2-py3-none-any.whl
Algorithm Hash digest
SHA256 eaefc4c0ec775bd2bcd4e43bd3a824ea90a0184b3b3f1ef2c2dffad11cb113aa
MD5 764d2402cf2dde797dea9704046b0761
BLAKE2b-256 4d6e10d38436d3621d675185cd0753f146d08995c22c91d3edf7fb55258a3293

See more details on using hashes here.

Provenance

The following attestation bundles were made for urllib3_lts_py38-2025.66471.2-py3-none-any.whl:

Publisher: publish.yml on 1minds3t/urllib3-lts

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page