[CLSA-2026:1772209911] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-02-27 16:31:56 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python39_3.9.23-8_amd64.deb
    sha:73436cb152989df5b4256b8e2d7a4ebb957c1611
  • alt-python39-debug_3.9.23-8_amd64.deb
    sha:f92d0e86b387b9fac43dc824ed869d44256a2175
  • alt-python39-devel_3.9.23-8_amd64.deb
    sha:655bace2dea94604de41ff9bf49adf27a7f42938
  • alt-python39-idle_3.9.23-8_amd64.deb
    sha:281865df91c935d270887e93e438f2639eb880f7
  • alt-python39-libs_3.9.23-8_amd64.deb
    sha:34d3db95c6bfad928c0fc96ff0ed4e3925f06aae
  • alt-python39-test_3.9.23-8_amd64.deb
    sha:3906e833ebecaa8e7eb0636e3cb87764e35ff062
  • alt-python39-tkinter_3.9.23-8_amd64.deb
    sha:4c97943258daae0c8e91bbe9d1a7073d5347ad4c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.