[CLSA-2026:1772454033] Fix CVE(s): CVE-2025-6075
Type:
security
Severity:
Moderate
Release date:
2026-03-02 12:20:38 UTC
Description:
* SECURITY UPDATE: Quadratic complexity in os.path.expandvars() - debian/patches/CVE-2025-6075.patch: fix quadratic complexity in os.path.expandvars() by replacing the character-by-character loop with regex-based substitution in both posixpath and ntpath modules. - CVE-2025-6075
Updated packages:
  • alt-python36_3.6.15-27_amd64.deb
    sha:6568a42f6afa427918ded9006b4d049c7fbd5284
  • alt-python36-debug_3.6.15-27_amd64.deb
    sha:3336560acef2e3f829e934e3f2c4ff24640429f3
  • alt-python36-devel_3.6.15-27_amd64.deb
    sha:b8f99c4aab17280bf0c31a73f0034ac2b1183950
  • alt-python36-libs_3.6.15-27_amd64.deb
    sha:92223cf24d33e41ba39dfbe9704d67d69d28d883
  • alt-python36-test_3.6.15-27_amd64.deb
    sha:20f9558ad369a6f2edde1ecf37f4335052accb26
  • alt-python36-tkinter_3.6.15-27_amd64.deb
    sha:8db9eae47caf4a3fc945b65494278c00603f0272
  • alt-python36-tools_3.6.15-27_amd64.deb
    sha:a6328629ccf30d6f593bc011dec34a9ec4ea3dc5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.