ELA-1642-1 python3.7 security update

multiple vulnerabilities

2026-02-10
Packagepython3.7
Version3.7.3-2+deb10u11 (buster)
Related CVEs CVE-2025-4516 CVE-2025-6069 CVE-2025-6075 CVE-2025-8194 CVE-2025-8291 CVE-2025-11468 CVE-2025-12084 CVE-2025-13837 CVE-2025-15282 CVE-2026-0672 CVE-2026-1299


Multiple security issues were discovered in Python, an interactive high-level object-oriented language. This may cause memory corruption, e-mail and HTTP headers injection, validation bypass of .zip archives, and denial of service (DoS).



For Debian 10 buster, these problems have been fixed in version 3.7.3-2+deb10u11.

We recommend that you upgrade your python3.7 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.