Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 15

Количество 15

ubuntu логотип

CVE-2026-4360

3 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-4360

3 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2026-4360

3 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2026-4360

3 месяца назад

Tarfile.extract() doesn't fully respect filter parameter

EPSS: Низкий
debian логотип

CVE-2026-4360

3 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-gf2w-jqmq-fcm8

3 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21595-1

около 1 месяца назад

Security update for python313

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:4174-1

10 дней назад

Security update for python39.SUSE_SLE-15-SP3_Update

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3569-1

около 1 месяца назад

Security update for python312

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3560-1

около 1 месяца назад

Security update for python311

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3548-1

около 1 месяца назад

Security update for python311

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3530-1

около 2 месяцев назад

Security update for python310

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3601-1

около 1 месяца назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3649-1

около 1 месяца назад

Security update for python313

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3855-1

27 дней назад

Security update for python36

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
0%
Низкий
3 месяца назад
msrc логотип
CVE-2026-4360

Tarfile.extract() doesn't fully respect filter parameter

0%
Низкий
3 месяца назад
debian логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed ...

CVSS3: 5.3
0%
Низкий
3 месяца назад
github логотип
GHSA-gf2w-jqmq-fcm8

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
0%
Низкий
3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21595-1

Security update for python313

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:4174-1

Security update for python39.SUSE_SLE-15-SP3_Update

10 дней назад
suse-cvrf логотип
SUSE-SU-2026:3569-1

Security update for python312

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3560-1

Security update for python311

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3548-1

Security update for python311

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3530-1

Security update for python310

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:3601-1

Security update for python3

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3649-1

Security update for python313

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:3855-1

Security update for python36

27 дней назад

Уязвимостей на страницу