[CLSA-2026:1772621100] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-03-04 10:45:05 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python38_3.8.20-10_amd64.deb
    sha:f5cbf11f4a30af03fc2ebb22a4f2b04a8ffb2a6f
  • alt-python38-debug_3.8.20-10_amd64.deb
    sha:5a7ec5942a4f08f88891d705544a22bffd638591
  • alt-python38-devel_3.8.20-10_amd64.deb
    sha:7d6d9342b7d787e78d78dfaabce5a4178a02dfd8
  • alt-python38-idle_3.8.20-10_amd64.deb
    sha:dc6dc9445ff5d31fc291c59c504dab548e37e702
  • alt-python38-libs_3.8.20-10_amd64.deb
    sha:29fd46b8e70c15b889731cc9d3aba263a8ea708f
  • alt-python38-test_3.8.20-10_amd64.deb
    sha:68375eda8de2501cb98c9f392adc4159d0d2c290
  • alt-python38-tkinter_3.8.20-10_amd64.deb
    sha:8576f2913be3a027affba3b24a7483610d742bb0
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.