[CLSA-2025:1762528946] alt-python36: Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2025-11-07 15:22:29 UTC
Description:
- Fix CVE-2024-12718, CVE-2025-4138, CVE-2025-4330, CVE-2025-4435, CVE-2025-4517: fix multiple tarfile extraction filter bypasses (filter="tar"/filter="data") - fix test_tarfile.py
Updated packages:
  • alt-python36-3.6.15-13.el7.x86_64.rpm
    sha:5e1b6413342c42a6de23f5431fe4d2423917067394b56c6f29c3fc3e77e2a9bb
  • alt-python36-debug-3.6.15-13.el7.x86_64.rpm
    sha:237c9d488579606f1e5689507ac0cc91009fb80303c99958ba74d69121bfe312
  • alt-python36-devel-3.6.15-13.el7.x86_64.rpm
    sha:f34c98c9d7a40b16948e228b094f5cf62f2c5d6a6036ba98d057b45a22eaeacf
  • alt-python36-libs-3.6.15-13.el7.x86_64.rpm
    sha:749bb902567b0b173303bc7c888868ed63ec1ce2924667d0843112e1660d2ba6
  • alt-python36-test-3.6.15-13.el7.x86_64.rpm
    sha:2d69f6c9d1cb2cde12c3c661161fbff987a721d6c388a5ae15d165a9e51391e4
  • alt-python36-tkinter-3.6.15-13.el7.x86_64.rpm
    sha:5f20efe2c4643b51a89aee7f2dadca582b787019e2c77514f106fd81217d65ca
  • alt-python36-tools-3.6.15-13.el7.x86_64.rpm
    sha:97ce5889a7e7902a045b3a4062fbf48243e965c11dc44ae5b5a243be34ac83f5
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.