[CLSA-2026:1777479294] Fix CVE(s): CVE-2026-6100
Type:
security
Severity:
Critical
Release date:
2026-04-30 22:58:13 UTC
Description:
* SECURITY UPDATE: use-after-free in BZ2Decompressor when MemoryError is raised in the C-level decompress() helper - debian/patches/CVE-2026-6100.patch: defensively null bzs->next_in on the error: path of BZ2Decomp_decompress in Modules/bz2module.c. - CVE-2026-6100
Updated packages:
  • alt-python27_2.7.18-16_amd64.deb
    sha:3256896224b9858d20e6b23ffef80797eca9a9bb
  • alt-python27-debug_2.7.18-16_amd64.deb
    sha:057a9e173e075da27240cde10967b86086493e44
  • alt-python27-devel_2.7.18-16_amd64.deb
    sha:d65b4923f91d12a138842dab9d3808079cc43b83
  • alt-python27-idle_2.7.18-16_amd64.deb
    sha:a9632ef8cccef90836a01ed5dbfee82cd4683951
  • alt-python27-libs_2.7.18-16_amd64.deb
    sha:162a34bb310f23b8d731698f42420ab943b619f9
  • alt-python27-test_2.7.18-16_amd64.deb
    sha:c52a27e65fbb4ae54c21420c12d89ed0f33444cd
  • alt-python27-tkinter_2.7.18-16_amd64.deb
    sha:78ac182c6120a5f2a60ccfe8fdf58eddee722dc9
  • alt-python27-tools_2.7.18-16_amd64.deb
    sha:e6bd3f0873b391b92ab342f27258b0733650579e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.