[CLSA-2025:1762528650] alt-python36: Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2025-11-07 15:17:33 UTC
Description:
- Fix CVE-2024-12718, CVE-2025-4138, CVE-2025-4330, CVE-2025-4435, CVE-2025-4517: fix multiple tarfile extraction filter bypasses (filter="tar"/filter="data") - fix test_tarfile.py
Updated packages:
  • alt-python36-3.6.15-13.el8.x86_64.rpm
    sha:852572ce93a8e325095d137b1fd3029f50980b4fb389782b0f81ebd115f06a86
  • alt-python36-debug-3.6.15-13.el8.x86_64.rpm
    sha:4f3c7580d0b4d2f92f3604c219a3efb3890666459084f73cd122f72f1ff482da
  • alt-python36-devel-3.6.15-13.el8.x86_64.rpm
    sha:0385c0e3c30f0766928749a9dd5199bb417b59e4f24fe3c6d5be7774aa1f8076
  • alt-python36-libs-3.6.15-13.el8.x86_64.rpm
    sha:4beaf3eae9f524f610017c65978bfa4af35d40f18f1889c4dabd1997a5ae42a4
  • alt-python36-test-3.6.15-13.el8.x86_64.rpm
    sha:90d3aab4c16a8923a791d76b2d2e4dac80ed5cc8b70940c7238814e65e5f6ab0
  • alt-python36-tkinter-3.6.15-13.el8.x86_64.rpm
    sha:3be7c179637662353b4358028406a938be3924b1f9d2a085e546f1d421130178
  • alt-python36-tools-3.6.15-13.el8.x86_64.rpm
    sha:e4ffe578c56c193951ea02de48a39b3e087ac93d239755c69877b11a3e4ccf47
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.