Release Info

Advisory: CLSA-2026:1771343841

OS: Debian 13

Public date: 2026-02-17 15:57:24.004331

Project: python

Version: 3.9.23-6

Errata link: https://errata.tuxcare.com/els_alt_python/debian13/CLSA-2026-1771343841.html

Changelog

* SECURITY UPDATE: Memory denial of service in plistlib - debian/patches/CVE-2025-13837.patch: read large data by chunks, therefore the upper limit of consumed memory is proportional to the size of the input file. - CVE-2025-13837

Update

Update command: apt-get update apt-get --only-upgrade install alt-python*

Packages list

alt-python39_3.9.23-6_amd64.deb alt-python39-debug_3.9.23-6_amd64.deb alt-python39-devel_3.9.23-6_amd64.deb alt-python39-idle_3.9.23-6_amd64.deb alt-python39-libs_3.9.23-6_amd64.deb alt-python39-test_3.9.23-6_amd64.deb alt-python39-tkinter_3.9.23-6_amd64.deb

CVEs

CVE-2025-13837