[CLSA-2026:1772445677] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-03-02 10:01:22 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python36_3.6.15-27_amd64.deb
    sha:1149eea4b8fa3dbbca61ae9912cf60f6fe468209
  • alt-python36-debug_3.6.15-27_amd64.deb
    sha:51459987a247495c176f696bfe944e036dea1ea9
  • alt-python36-devel_3.6.15-27_amd64.deb
    sha:d965efe792abc4ec8f4413822453f6d14cc6ff25
  • alt-python36-libs_3.6.15-27_amd64.deb
    sha:e03e072c9aa9487e217bec5cb3e8131e78ed0387
  • alt-python36-test_3.6.15-27_amd64.deb
    sha:07a6d8304ae8dde852164837767fc382fd6d0932
  • alt-python36-tkinter_3.6.15-27_amd64.deb
    sha:b576df2178ffd6e412bc3f8da1cc98ea9dedc2ba
  • alt-python36-tools_3.6.15-27_amd64.deb
    sha:33afc215de8ac55a56edf977d288c07ae0df75c3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.