[CLSA-2026:1777660524] python3.11: Fix of CVE-2026-6100
Type:
security
Severity:
Critical
Release date:
2026-05-01 18:35:28 UTC
Description:
- CVE-2026-6100 fix use-after-free in lzma/bz2 decompressor by clearing the dangling next_in pointer after MemoryError so a re-used decompressor cannot read or write through a stale buffer pointer
Updated packages:
  • python3.11-3.11.2-2.el9_2.2.tuxcare.els21.i686.rpm
    sha:7e90face0083a50f7dfd12a0198d897bb7813dc1b274a546a1db3d2a73e5c4f9
  • python3.11-3.11.2-2.el9_2.2.tuxcare.els21.x86_64.rpm
    sha:6ecb94de4b5a3f3d381ff22595e2e2249420f6d93745a5bec67fa41d21d81936
  • python3.11-debug-3.11.2-2.el9_2.2.tuxcare.els21.i686.rpm
    sha:55314fc24ae774dc4d82ea13ec6e6f32401fa4bb86f5f5e538a67d5165d9160d
  • python3.11-debug-3.11.2-2.el9_2.2.tuxcare.els21.x86_64.rpm
    sha:1a814f47bf263fedc2f1a2a51b3d3ae4c68915ff24a4337d094bf7471d932681
  • python3.11-devel-3.11.2-2.el9_2.2.tuxcare.els21.i686.rpm
    sha:414d3466d10a653ec87ea70c742097b9e3f77cc6763495427d9de1ba2fe9e2f7
  • python3.11-devel-3.11.2-2.el9_2.2.tuxcare.els21.x86_64.rpm
    sha:6c16a0cfc5ea70a337333bd56821c5f563f7f189ba0fdfab08d55ab1388bd94f
  • python3.11-idle-3.11.2-2.el9_2.2.tuxcare.els21.i686.rpm
    sha:237a596be7dd6ebb4f5607642e20c4ef2c86cc705cda6e7693754dd05787b773
  • python3.11-idle-3.11.2-2.el9_2.2.tuxcare.els21.x86_64.rpm
    sha:73e6cf43ccfcd2380b9f65c1a7521b414d64f3795bcd5ca15fb77049d2b4bf99
  • python3.11-libs-3.11.2-2.el9_2.2.tuxcare.els21.i686.rpm
    sha:5956b32d2a123deadba91bdd7a1dad0f2c560f32aca1e3054830101bf461ba90
  • python3.11-libs-3.11.2-2.el9_2.2.tuxcare.els21.x86_64.rpm
    sha:c61f7297456531d5ad01ab352817267640d51a0721e3c2e3e92349d196cdf494
  • python3.11-test-3.11.2-2.el9_2.2.tuxcare.els21.i686.rpm
    sha:21457a450deda2780fa2be729dc48be6a64246fed403620cfa5d92fb7c6f4e63
  • python3.11-test-3.11.2-2.el9_2.2.tuxcare.els21.x86_64.rpm
    sha:b73cc8a63df5a6fcb5f5c9d7b902d68f2837bb9069b67b46956f5187cf00b777
  • python3.11-tkinter-3.11.2-2.el9_2.2.tuxcare.els21.i686.rpm
    sha:39cb397b3d4257fd8a432cfb7be479fae1e164abbdf92207150935ee0632f172
  • python3.11-tkinter-3.11.2-2.el9_2.2.tuxcare.els21.x86_64.rpm
    sha:e8af012bbf42f4b959755ab75b9bdf5168fb3ead1926037e2bb5d99bfd06d569
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.