python3.11-setuptools-65.5.1-4.el9_6
エラータID: AXSA:2025-10739:02
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.
Security Fix(es):
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.
Security Fix(es):
* setuptools: Path Traversal Vulnerability in setuptools PackageIndex (CVE-2025-47273)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2025-47273
setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.
Update packages.
setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `PackageIndex` is present in setuptools prior to version 78.1.1. An attacker would be allowed to write files to arbitrary locations on the filesystem with the permissions of the process running the Python code, which could escalate to remote code execution depending on the context. Version 78.1.1 fixes the issue.
N/A
SRPMS
- python3.11-setuptools-65.5.1-4.el9_6.src.rpm
MD5: f52cfae2f0380c1dc23fb981cf135825
SHA-256: 2df13f700a13ce32dea535d6c490fd64bb165148e0715a1f32cf4042a853c181
Size: 2.51 MB
Asianux Server 9 for x86_64
- python3.11-setuptools-65.5.1-4.el9_6.noarch.rpm
MD5: b9aad8cfc743455e21db2ca5955487ae
SHA-256: 34f20b847c97df89d53c86941585f2691d865a026d5d9365f2f5c1d415546f83
Size: 1.70 MB - python3.11-setuptools-wheel-65.5.1-4.el9_6.noarch.rpm
MD5: 030eef18946418e94c41ea75bc8bb9c0
SHA-256: a566b966334f6a3f09123fb1081ccd4c2b9d03ed37429ba89f1abac09fddea67
Size: 711.94 kB