[CLSA-2025:1762529544] alt-python36: Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2025-11-07 15:32:28 UTC
Description:
- Fix CVE-2024-12718, CVE-2025-4138, CVE-2025-4330, CVE-2025-4435, CVE-2025-4517: fix multiple tarfile extraction filter bypasses (filter="tar"/filter="data") - fix test_tarfile.py
Updated packages:
  • alt-python36-3.6.15-13.el10.x86_64.rpm
    sha:27e10280475fc3a4c99d3c6439ec3c5272cda1d4997f2d5eab38cb5e1716d707
  • alt-python36-debug-3.6.15-13.el10.x86_64.rpm
    sha:55cf33be1f13cccff9c4e4798625dbc1d995ee4e4184a08905132b173c3e1b22
  • alt-python36-devel-3.6.15-13.el10.x86_64.rpm
    sha:83fa890a964a616848342bcf0ac8253be46f9d4a4f8836b39634f3cd205e07b8
  • alt-python36-libs-3.6.15-13.el10.x86_64.rpm
    sha:b56bf64db0173d5b98ca52e1d2893895eaac205761cfe5340913354164f89af4
  • alt-python36-test-3.6.15-13.el10.x86_64.rpm
    sha:f0fa54dc069c7fc4b6e20e31861e93fdcba059e625a52773b9c7a636e503bcc6
  • alt-python36-tkinter-3.6.15-13.el10.x86_64.rpm
    sha:3f064cd4ba1b5e0e227ea499113ba8ba63445976dffb19e378f25fbb902d7b30
  • alt-python36-tools-3.6.15-13.el10.x86_64.rpm
    sha:1eae81987d902600c8e27b65e1851735463064c58cffaabb09acdec5553f9065
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.