[CLSA-2025:1762528386] alt-python36: Fix of 5 CVEs
Type:
security
Severity:
Important
Release date:
2025-11-07 15:13:09 UTC
Description:
- Fix CVE-2024-12718, CVE-2025-4138, CVE-2025-4330, CVE-2025-4435, CVE-2025-4517: fix multiple tarfile extraction filter bypasses (filter="tar"/filter="data") - fix test_tarfile.py
Updated packages:
  • alt-python36-3.6.15-13.el9.x86_64.rpm
    sha:51b690a7d79b458710328d90d0f24d192c768d066c26d06d1004a9debfab19a8
  • alt-python36-debug-3.6.15-13.el9.x86_64.rpm
    sha:8c8d04196a128af314deb7e4d453766011ae0188ee1154fd6bb73d13dde071d4
  • alt-python36-devel-3.6.15-13.el9.x86_64.rpm
    sha:90f86dd241345843834095dc4aa9beb15f8d40744a797422a63e75e25f169e65
  • alt-python36-libs-3.6.15-13.el9.x86_64.rpm
    sha:c25500efefa8a17e969af566b4380ee81e6a35547866d95b09efb5f962d159f2
  • alt-python36-test-3.6.15-13.el9.x86_64.rpm
    sha:6728e08ddcf40ae0a4ed345184beed444e21f5c86d06c8f00d303a4a3732293d
  • alt-python36-tkinter-3.6.15-13.el9.x86_64.rpm
    sha:cf4973717bf02426a84f1e52fc0e5ae1cd3e1603a77b09482ea3826a2c04d4ab
  • alt-python36-tools-3.6.15-13.el9.x86_64.rpm
    sha:d323510f7525b988f8e968058d4e34bf7477dfd5d58a0921f7c546320c93ac14
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.