[CLSA-2026:1777478120] Fix CVE(s): CVE-2026-6100
Type:
security
Severity:
Critical
Release date:
2026-04-30 22:43:39 UTC
Description:
* SECURITY UPDATE: use-after-free in BZ2Decompressor when MemoryError is raised in the C-level decompress() helper - debian/patches/CVE-2026-6100.patch: defensively null bzs->next_in on the error: path of BZ2Decomp_decompress in Modules/bz2module.c. - CVE-2026-6100
Updated packages:
  • alt-python27_2.7.18-16_amd64.deb
    sha:1414c95dd853d872f0a03fbbc2a1da931dcddd79
  • alt-python27-debug_2.7.18-16_amd64.deb
    sha:a8d182e49e5c3c89d05800954eeee317b9a16ed5
  • alt-python27-devel_2.7.18-16_amd64.deb
    sha:2caa669725838bf14483c8424cec49f01e3765a7
  • alt-python27-idle_2.7.18-16_amd64.deb
    sha:a9632ef8cccef90836a01ed5dbfee82cd4683951
  • alt-python27-libs_2.7.18-16_amd64.deb
    sha:c746bf7dd95082119b3508366f34bf3a8d8a47cf
  • alt-python27-test_2.7.18-16_amd64.deb
    sha:5719bdba4fb55cb615c5ad96a512cfd709386fa3
  • alt-python27-tkinter_2.7.18-16_amd64.deb
    sha:e3584e41e363d226b98d5cc829e5b2c74998ea9f
  • alt-python27-tools_2.7.18-16_amd64.deb
    sha:e6bd3f0873b391b92ab342f27258b0733650579e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.