[CLSA-2026:1772445876] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-03-02 10:04:40 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python36_3.6.15-27_amd64.deb
    sha:65d8b6a93b0ff6be1aa1eb83e5308b28f4dff0ff
  • alt-python36-debug_3.6.15-27_amd64.deb
    sha:641a5939dd24251aab6e000df75d38d2b755c03f
  • alt-python36-devel_3.6.15-27_amd64.deb
    sha:197141b9b0da0613c9ec62051b47aaa7cdf00cdf
  • alt-python36-libs_3.6.15-27_amd64.deb
    sha:3a7bba6756ef12ee303c468c78431f3c00f0cc16
  • alt-python36-test_3.6.15-27_amd64.deb
    sha:3293b375fc76b5c8fa7142de267262523eb3335f
  • alt-python36-tkinter_3.6.15-27_amd64.deb
    sha:2535bc66c5457136efd7f04af98a2f1f0fb32fa5
  • alt-python36-tools_3.6.15-27_amd64.deb
    sha:c0c3e21e401700fb568a8df04f566dc82d19dd75
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.