[CLSA-2026:1772444811] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-03-02 09:46:56 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python36_3.6.15-27_amd64.deb
    sha:5fe1ea04ab22921a51aad19334ff5cf393d31ea7
  • alt-python36-debug_3.6.15-27_amd64.deb
    sha:8c4c78fc85a5447081971428f201a8f0215121b3
  • alt-python36-devel_3.6.15-27_amd64.deb
    sha:d3f17a210cffda0d1c65aec8cda9e344d0f83994
  • alt-python36-libs_3.6.15-27_amd64.deb
    sha:d2b0c1f41fd13bea75c5cedcce2872993f15cd4b
  • alt-python36-test_3.6.15-27_amd64.deb
    sha:89043fe78df5dd2df8d7f6068dd5374ef11ad1ae
  • alt-python36-tkinter_3.6.15-27_amd64.deb
    sha:680aacf940927797c4ddcbfda4f6ff5cf70442f7
  • alt-python36-tools_3.6.15-27_amd64.deb
    sha:c9d7ff62d9b53be744c507a5b72fc135b1501fb9
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.