[CLSA-2026:1772447145] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-03-02 10:25:50 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python37_3.7.17-13_amd64.deb
    sha:72ddb850b0cdf233094d927dc91672f382014416
  • alt-python37-debug_3.7.17-13_amd64.deb
    sha:63e28e3133b9c92560467a150fb4586787995f37
  • alt-python37-devel_3.7.17-13_amd64.deb
    sha:6fc4b1bf20bc4b8d879bba1949813ad36b2dcd5e
  • alt-python37-libs_3.7.17-13_amd64.deb
    sha:f244ee463fdd36f24a557f599af4acdb9a6c052d
  • alt-python37-test_3.7.17-13_amd64.deb
    sha:ad0428f884d0739e707a1745b58d90a5ae020a87
  • alt-python37-tkinter_3.7.17-13_amd64.deb
    sha:40e3c764b8b90ca6d6c3eb9ca973ced559ade9ef
  • alt-python37-tools_3.7.17-13_amd64.deb
    sha:06e707e84442aed7cbe7cd621b4871d6ee2d22f5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.