[CLSA-2026:1772445041] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-03-02 09:50:46 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python36_3.6.15-27_amd64.deb
    sha:a113a908fad96c48c243d64e412d21f232ebcdb0
  • alt-python36-debug_3.6.15-27_amd64.deb
    sha:d029fd16a0f1facaf1d6d7e2b1a738ee8b1a5cf4
  • alt-python36-devel_3.6.15-27_amd64.deb
    sha:70f34ca22316bfbce23d147300b1113bd0f2784c
  • alt-python36-libs_3.6.15-27_amd64.deb
    sha:c224f4b3fd68118a807631dd95d20045c9061f71
  • alt-python36-test_3.6.15-27_amd64.deb
    sha:e6846a073a1b7048c1ad3ddd6e0c4826d2d7c7eb
  • alt-python36-tkinter_3.6.15-27_amd64.deb
    sha:539d3ae960a8922530f8fd47784894f19f1ec805
  • alt-python36-tools_3.6.15-27_amd64.deb
    sha:7f8d516f6e4743ddb83bd1070d331d8e5f71db1a
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.