Количество 64
Количество 64
RLSA-2025:14841
Moderate: python3.11 security update
RLSA-2025:14546
Moderate: python3.12 security update
GHSA-v594-44hm-2j7p
There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs. The tar implementation would process tar archives with negative offsets without error, resulting in an infinite loop and deadlock during the parsing of maliciously crafted tar archives. This vulnerability can be mitigated by including the following patch after importing the “tarfile” module: import tarfile def _block_patched(self, count): if count < 0: # pragma: no cover raise tarfile.InvalidHeaderError("invalid offset") return _block_patched._orig_block(self, count) _block_patched._orig_block = tarfile.TarInfo._block tarfile.TarInfo._block = _block_patched
ELSA-2025-16117
ELSA-2025-16117: python3 security update (MODERATE)
ELSA-2025-15019
ELSA-2025-15019: python3.9 security update (MODERATE)
ELSA-2025-15010
ELSA-2025-15010: python3.11 security update (MODERATE)
ELSA-2025-15007
ELSA-2025-15007: python3.12 security update (MODERATE)
ELSA-2025-14984
ELSA-2025-14984: python3.12 security update (MODERATE)
ELSA-2025-14841
ELSA-2025-14841: python3.11 security update (MODERATE)
ELSA-2025-14560
ELSA-2025-14560: python3 security update (MODERATE)
ELSA-2025-14546
ELSA-2025-14546: python3.12 security update (MODERATE)
BDU:2025-09687
Уязвимость модуля tarfile интерпретатора языка программирования Python (CPython), позволяющая нарушителю вызвать отказ в обслуживании
SUSE-SU-2025:01810-1
Security update for python3-setuptools
SUSE-SU-2025:01774-1
Security update for python312-setuptools
SUSE-SU-2025:01744-1
Security update for python313-setuptools
SUSE-SU-2025:01723-1
Security update for python39-setuptools
SUSE-SU-2025:01715-1
Security update for python-setuptools
SUSE-SU-2025:01709-1
Security update for python310-setuptools
SUSE-SU-2025:01704-2
Security update for python-setuptools
SUSE-SU-2025:01704-1
Security update for python-setuptools
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2025:14841 Moderate: python3.11 security update | 0% Низкий | 3 месяца назад | ||
RLSA-2025:14546 Moderate: python3.12 security update | 0% Низкий | 3 месяца назад | ||
GHSA-v594-44hm-2j7p There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs. The tar implementation would process tar archives with negative offsets without error, resulting in an infinite loop and deadlock during the parsing of maliciously crafted tar archives. This vulnerability can be mitigated by including the following patch after importing the “tarfile” module: import tarfile def _block_patched(self, count): if count < 0: # pragma: no cover raise tarfile.InvalidHeaderError("invalid offset") return _block_patched._orig_block(self, count) _block_patched._orig_block = tarfile.TarInfo._block tarfile.TarInfo._block = _block_patched | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
ELSA-2025-16117 ELSA-2025-16117: python3 security update (MODERATE) | 2 месяца назад | |||
ELSA-2025-15019 ELSA-2025-15019: python3.9 security update (MODERATE) | 3 месяца назад | |||
ELSA-2025-15010 ELSA-2025-15010: python3.11 security update (MODERATE) | 3 месяца назад | |||
ELSA-2025-15007 ELSA-2025-15007: python3.12 security update (MODERATE) | 3 месяца назад | |||
ELSA-2025-14984 ELSA-2025-14984: python3.12 security update (MODERATE) | 3 месяца назад | |||
ELSA-2025-14841 ELSA-2025-14841: python3.11 security update (MODERATE) | 3 месяца назад | |||
ELSA-2025-14560 ELSA-2025-14560: python3 security update (MODERATE) | 3 месяца назад | |||
ELSA-2025-14546 ELSA-2025-14546: python3.12 security update (MODERATE) | 3 месяца назад | |||
BDU:2025-09687 Уязвимость модуля tarfile интерпретатора языка программирования Python (CPython), позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 0% Низкий | 4 месяца назад | |
SUSE-SU-2025:01810-1 Security update for python3-setuptools | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2025:01774-1 Security update for python312-setuptools | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2025:01744-1 Security update for python313-setuptools | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2025:01723-1 Security update for python39-setuptools | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2025:01715-1 Security update for python-setuptools | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2025:01709-1 Security update for python310-setuptools | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2025:01704-2 Security update for python-setuptools | 0% Низкий | 6 месяцев назад | ||
SUSE-SU-2025:01704-1 Security update for python-setuptools | 0% Низкий | 6 месяцев назад |
Уязвимостей на страницу