Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-13462

Опубликовано: 12 мар. 2026
Источник: redhat
CVSS3: 2.5

Описание

The "tarfile" module would still apply normalization of AREGTYPE (\x00) blocks to DIRTYPE, even while processing a multi-block member such as GNUTYPE_LONGNAME or GNUTYPE_LONGLINK. This could result in a crafted tar archive being misinterpreted by the tarfile module compared to other implementations.

A flaw was found in the tarfile module of cpython. This vulnerability allows a remote attacker to craft a malicious tar archive that, when processed, could be misinterpreted by the tarfile module. This misinterpretation occurs because the module incorrectly applies normalization of AREGTYPE blocks to DIRTYPE during the processing of multi-block members, such as GNUTYPE_LONGNAME or GNUTYPE_LONGLINK. The consequence is that the tarfile module may process the archive differently than intended, potentially leading to unexpected file system changes or data integrity issues.

Отчет

A Low-impact flaw in Python’s tarfile module mishandles multi-block members. A local attacker could use a crafted tar archive to cause minor data integrity issues or unexpected file system changes under specific, high-complexity conditions.

Меры по смягчению последствий

Avoid using Python's tarfile module to extract untrusted archives. If processing untrusted archives is required, delegate extraction to the system-level tar utility (via the subprocess module). For Python 3.12 or newer, you can instead enforce strict extraction filters using tarfile.data_filter to secure the module's extraction behavior.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Exploit Intelligenceexploit-intelligence-tech-preview/vulnerability-analysis-rhel9Fix deferred
Red Hat Enterprise Linux 10python3.12Fix deferred
Red Hat Enterprise Linux 10python3.14Fix deferred
Red Hat Enterprise Linux 6pythonFix deferred
Red Hat Enterprise Linux 7pythonFix deferred
Red Hat Enterprise Linux 7python3Fix deferred
Red Hat Enterprise Linux 8python3Fix deferred
Red Hat Enterprise Linux 8python3.12Fix deferred
Red Hat Enterprise Linux 8python36Fix deferred
Red Hat Enterprise Linux 9python3.12Fix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-237
https://bugzilla.redhat.com/show_bug.cgi?id=2447082cpython: cpython: `tarfile` module misinterprets crafted tar archives leading to data integrity issues

2.5 Low

CVSS3

Связанные уязвимости

CVSS3: 3.3
ubuntu
5 месяцев назад

The "tarfile" module would still apply normalization of AREGTYPE (\x00) blocks to DIRTYPE, even while processing a multi-block member such as GNUTYPE_LONGNAME or GNUTYPE_LONGLINK. This could result in a crafted tar archive being misinterpreted by the tarfile module compared to other implementations.

CVSS3: 3.3
nvd
5 месяцев назад

The "tarfile" module would still apply normalization of AREGTYPE (\x00) blocks to DIRTYPE, even while processing a multi-block member such as GNUTYPE_LONGNAME or GNUTYPE_LONGLINK. This could result in a crafted tar archive being misinterpreted by the tarfile module compared to other implementations.

msrc
4 месяца назад

tarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handling

CVSS3: 3.3
debian
5 месяцев назад

The "tarfile" module would still apply normalization of AREGTYPE (\x00 ...

CVSS3: 2.5
redos
около 1 месяца назад

Уязвимость python3.13

2.5 Low

CVSS3