[CLSA-2026:1772445256] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-03-02 09:54:21 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python36_3.6.15-27_amd64.deb
    sha:74e11867ff7ba872f45a127d3658362d2ff6032e
  • alt-python36-debug_3.6.15-27_amd64.deb
    sha:e2f2c4529dd453d84a328986f7bacbae8ece8bec
  • alt-python36-devel_3.6.15-27_amd64.deb
    sha:2271ccdbd4a64cca79f2cf63cae32bee96da7d4f
  • alt-python36-libs_3.6.15-27_amd64.deb
    sha:f39d5fc82a08d5c8700ec61d797012f454fc7887
  • alt-python36-test_3.6.15-27_amd64.deb
    sha:89a498fc2bd3bc87a4ec3b427ee7e7d5b5a23825
  • alt-python36-tkinter_3.6.15-27_amd64.deb
    sha:96053b57593de0285820605d288e0aef27a2b5e1
  • alt-python36-tools_3.6.15-27_amd64.deb
    sha:1db0744ddc07a2c87e6ba19b6c771db3d45f00ba
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.