[CLSA-2026:1772445458] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-03-02 09:57:42 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python36_3.6.15-27_amd64.deb
    sha:0bda2e1d764d6994eb014ea004332570907f64de
  • alt-python36-debug_3.6.15-27_amd64.deb
    sha:ef137f161dcb29fe78cf70587226f6495642f210
  • alt-python36-devel_3.6.15-27_amd64.deb
    sha:eb2de128cabc9a1127f989aec63e2051c59493d9
  • alt-python36-libs_3.6.15-27_amd64.deb
    sha:8e03c353b87a8e963d70080853970ef3846799b8
  • alt-python36-test_3.6.15-27_amd64.deb
    sha:59ade8db90e14be4c3320024e26052d9e5f0ac3e
  • alt-python36-tkinter_3.6.15-27_amd64.deb
    sha:0036fde56e1d2b47ab791ca0e0efe0706a7447ea
  • alt-python36-tools_3.6.15-27_amd64.deb
    sha:4788d1817dedd8c9569c2da018c14c3425d48e30
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.