[CLSA-2026:1777530671] Fix CVE(s): CVE-2026-6100
Type:
security
Severity:
Critical
Release date:
2026-04-30 22:39:43 UTC
Description:
* SECURITY UPDATE: use-after-free in BZ2Decompressor when MemoryError is raised in the C-level decompress() helper - debian/patches/CVE-2026-6100.patch: defensively null bzs->next_in on the error: path of BZ2Decomp_decompress in Modules/bz2module.c. - CVE-2026-6100
Updated packages:
  • alt-python27_2.7.18-16_amd64.deb
    sha:731eff56ab1138ff8f1ea85a33a863a619a1fd31
  • alt-python27-debug_2.7.18-16_amd64.deb
    sha:867190497bd6f2ba301db533b8b6bff27a325e4b
  • alt-python27-devel_2.7.18-16_amd64.deb
    sha:6d7b85bed8e04ffa7021e8fc6d3276778f25b5dc
  • alt-python27-idle_2.7.18-16_amd64.deb
    sha:ef23a0aa46c4340fcbee6eb17d40e7576ccfd1a7
  • alt-python27-libs_2.7.18-16_amd64.deb
    sha:d3a03db30077d715ec3ee97e8090c55f22df6b58
  • alt-python27-test_2.7.18-16_amd64.deb
    sha:4fffd6dc050ac1067ecf6017a721ba7376c190f5
  • alt-python27-tkinter_2.7.18-16_amd64.deb
    sha:1774954757ea407278ab961a05a06fdd806aded0
  • alt-python27-tools_2.7.18-16_amd64.deb
    sha:8f47f2c49c30bd8be660ef8b4364bde59b2c6c51
  • alt-python27_2.7.18-16_arm64.deb
    sha:d0949cb35d792ee2276c0640b821098321a11a80
  • alt-python27-debug_2.7.18-16_arm64.deb
    sha:805dcef767e9be745447f066cba7966c3a3d9b82
  • alt-python27-devel_2.7.18-16_arm64.deb
    sha:2874bce9d8c6eb8c3c5a3bd691f06a323f30a35d
  • alt-python27-idle_2.7.18-16_arm64.deb
    sha:c45acf43692649a1c49e42a82597b69c913ac5bf
  • alt-python27-libs_2.7.18-16_arm64.deb
    sha:c6af7fa67e2b1b576c4a41a01e05171a60bf0366
  • alt-python27-test_2.7.18-16_arm64.deb
    sha:81433d3be5295d6515c098fb92025a84c1087212
  • alt-python27-tkinter_2.7.18-16_arm64.deb
    sha:3ec058d4eda8cc5f25924e6d069e1cb0a38b83ea
  • alt-python27-tools_2.7.18-16_arm64.deb
    sha:d746cec4fb57204b032ffb6ef70bf679ed87dad6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.