========================================================================== Ubuntu Security Notice USN-7503-1 May 08, 2025 python-h11 vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 24.10 - Ubuntu 24.04 LTS Summary: python-h11 could be made to expose sensitive information over the network. Software Description: - python-h11: Pure-Python, bring-your-own-I/O implementation of HTTP/1.1 Details: Jeppe Bonde Weikop discovered that h11 incorrectly handled crafted HTTP requests. A remote attacker could possibly use this issue to smuggle malicious HTTP requests, which could potentially lead to security control bypass and information leakage. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 24.10 python3-h11 0.14.0-1ubuntu0.24.10.1 Ubuntu 24.04 LTS python3-h11 0.14.0-1ubuntu0.24.04.1 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7503-1 CVE-2025-43859 Package Information: https://launchpad.net/ubuntu/+source/python-h11/0.14.0-1ubuntu0.24.10.1 https://launchpad.net/ubuntu/+source/python-h11/0.14.0-1ubuntu0.24.04.1