fence-agents-4.10.0-76.el9_5.6
エラータID: AXSA:2025-9811:03
リリース日:
2025/03/28 Friday - 11:04
題名:
fence-agents-4.10.0-76.el9_5.6
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- Jinja のサンドボックス環境には、lattr フィルターとの
送受信処理に問題があるため、ローカルの攻撃者により、
細工されたテンプレートコンテンツの処理を介して、
任意の Python コードの実行を可能とする脆弱性が存在
します。(CVE-2025-27516)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2025-27516
Jinja is an extensible templating engine. Prior to 3.1.6, an oversight in how the Jinja sandboxed environment interacts with the |attr filter allows an attacker that controls the content of a template to execute arbitrary Python code. To exploit the vulnerability, an attacker needs to control the content of a template. Whether that is the case depends on the type of application using Jinja. This vulnerability impacts users of applications which execute untrusted templates. Jinja's sandbox does catch calls to str.format and ensures they don't escape the sandbox. However, it's possible to use the |attr filter to get a reference to a string's plain format method, bypassing the sandbox. After the fix, the |attr filter no longer bypasses the environment's attribute lookup. This vulnerability is fixed in 3.1.6.
Jinja is an extensible templating engine. Prior to 3.1.6, an oversight in how the Jinja sandboxed environment interacts with the |attr filter allows an attacker that controls the content of a template to execute arbitrary Python code. To exploit the vulnerability, an attacker needs to control the content of a template. Whether that is the case depends on the type of application using Jinja. This vulnerability impacts users of applications which execute untrusted templates. Jinja's sandbox does catch calls to str.format and ensures they don't escape the sandbox. However, it's possible to use the |attr filter to get a reference to a string's plain format method, bypassing the sandbox. After the fix, the |attr filter no longer bypasses the environment's attribute lookup. This vulnerability is fixed in 3.1.6.
追加情報:
N/A
ダウンロード:
SRPMS
- fence-agents-4.10.0-76.el9_5.6.src.rpm
MD5: d996772be4d7ca2e09e27d4fe5c9ddc6
SHA-256: ce2d692d6f0ccddfb49dd969bccae53fda9f6853a82beb8734ca5c79d6dc5449
Size: 74.79 MB
Asianux Server 9 for x86_64
- fence-agents-aliyun-4.10.0-76.el9_5.6.x86_64.rpm
MD5: c5eafca353a7a443ba7ce2ff612465ee
SHA-256: 34a87cdf93b455f1374e2658455331a8d9ce51732d0d687b6b3a8e097426b4c4
Size: 14.78 kB - fence-agents-all-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 83ecf812d8a20c128763f204774df270
SHA-256: f48a7742e2aab4180beea8dae64b0e8a34f90a6496ceb09e66a38f2026aba79d
Size: 10.94 kB - fence-agents-amt-ws-4.10.0-76.el9_5.6.noarch.rpm
MD5: 648906f5ca8237769d66e2976bab45f3
SHA-256: 27b743ca3d09bd2ce159085c0f625fbe5b46c9f2bf6c95c78fcd14dfa9c53137
Size: 14.96 kB - fence-agents-apc-4.10.0-76.el9_5.6.noarch.rpm
MD5: a9ed561863ffee70a7256e9a2528f0be
SHA-256: 55acf26ec4052a047704b6de56332bb276d762af79e16ebf478e7fb6cf0906e9
Size: 15.08 kB - fence-agents-apc-snmp-4.10.0-76.el9_5.6.noarch.rpm
MD5: ed74224f00de0b8ff82128712cf61a70
SHA-256: 25e50956f145a302a658e6b588dd83d0774f42597a5f9e694b460dd2b0fdfed8
Size: 17.43 kB - fence-agents-aws-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 04022aa4d0da4bf2ca8a073dfe8a3e75
SHA-256: aee13964b0522cf00d40cc90ea3a5138e65f972ed41f75e58aa8b0ffae401bd9
Size: 15.34 kB - fence-agents-azure-arm-4.10.0-76.el9_5.6.x86_64.rpm
MD5: e058b889d77bf333870b2a37fa8a9175
SHA-256: d4d35d7f2e66dc419a76db926d16e53012bdc3fe967a07c81f3288e63d45f9ee
Size: 24.49 kB - fence-agents-bladecenter-4.10.0-76.el9_5.6.noarch.rpm
MD5: de0ecc99375facae247ad208b3f8a052
SHA-256: f7fc099fbaa44e10514d7e3e08a5c100c66e5d3909e766662c6747dfb93d2c49
Size: 14.12 kB - fence-agents-brocade-4.10.0-76.el9_5.6.noarch.rpm
MD5: cbf1cd3070cb8ef58ed6996abddb0e78
SHA-256: 7bd6b1e5001a2c8ccd66c270f9330771554bc7f4d40a6894cee4f955d5b3958c
Size: 14.22 kB - fence-agents-cisco-mds-4.10.0-76.el9_5.6.noarch.rpm
MD5: 4aa160af67d55bfbbdbc4fcd64f6835b
SHA-256: f1b1f909eb2593ad5a9840a031272a013ac0b7d95493ee54b259d562c1ce0f0d
Size: 14.06 kB - fence-agents-cisco-ucs-4.10.0-76.el9_5.6.noarch.rpm
MD5: b972fea4a93c62df3d1455b6bfc4623f
SHA-256: ce4ef687a1a109937f0cbb026023169c39f492b41723406d819dae7f36e8a9ae
Size: 14.75 kB - fence-agents-common-4.10.0-76.el9_5.6.noarch.rpm
MD5: bf0ba88905ea2d6f7f19b08a5fcca3ae
SHA-256: ffcf62ed51756fe3dde24a7f581e4c4ee826cc045808400d2f8fe5109126ee57
Size: 424.67 kB - fence-agents-compute-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 5311c0cf249863fb9217766d6ac7dbc7
SHA-256: 779385cd0ad3e5b7566633829c44f5e9e61e74c9af6e72b41a7bebf18a9caf98
Size: 21.19 kB - fence-agents-drac5-4.10.0-76.el9_5.6.noarch.rpm
MD5: b85a03a1676d41e796479d32b8d441b0
SHA-256: 7c8077828f325b063c5b80ff34cd483e6ea7c7c549ce32335bb61c385744fef4
Size: 14.72 kB - fence-agents-eaton-snmp-4.10.0-76.el9_5.6.noarch.rpm
MD5: 1193e46241dab1b6349060175adf201d
SHA-256: 69693bbd50b1639e399cfdb807f7bffe8972b153d684c08b8df44ed09352d428
Size: 15.24 kB - fence-agents-emerson-4.10.0-76.el9_5.6.noarch.rpm
MD5: 1c8160d0926564cd7acb01b9795b5dee
SHA-256: 6ecff0be66b0d0f74d170398f40f02263aa6111cd18d2f97cb5ed2a00b2b32fb
Size: 13.71 kB - fence-agents-eps-4.10.0-76.el9_5.6.noarch.rpm
MD5: c045961679febecbab343251702e3305
SHA-256: b1fc0b01fd30c69927235a95f2f75f294515bd05a5ee2eb268f4d9249b876c00
Size: 16.53 kB - fence-agents-gce-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 7bb52447b49ddbd3d6c8140568e2395a
SHA-256: 5280ec2060541273b49f17b1496f974f7c4aea4da6a5067b10854a5795742c5d
Size: 19.08 kB - fence-agents-heuristics-ping-4.10.0-76.el9_5.6.noarch.rpm
MD5: 851dac0ca0e9617cac5132b1c751c126
SHA-256: a90b7f104865fc4ce4ebeaf6f7c92a1e34c89f3a8eb6bec8a738c7c094f20fdc
Size: 14.59 kB - fence-agents-hpblade-4.10.0-76.el9_5.6.noarch.rpm
MD5: a2ad72f05f79fd9cd92965d64d6941b5
SHA-256: d5681a306fee113e80cdeb41af416546fbc7f1d77a202fe2a6ba35efe1d1b8d9
Size: 14.29 kB - fence-agents-ibmblade-4.10.0-76.el9_5.6.noarch.rpm
MD5: 83f020730c83a92fe75ed150940e999c
SHA-256: 0dd3179f4e9cba41c4017dfd7321769747aad9cb140d976346ed5e892610192f
Size: 13.83 kB - fence-agents-ibm-powervs-4.10.0-76.el9_5.6.noarch.rpm
MD5: ed17d75c91838e16977c11b383bae993
SHA-256: 903d5f0077e169d9314105f2af59735a90ed854b7d3fb441d1f1511d4d817790
Size: 14.87 kB - fence-agents-ibm-vpc-4.10.0-76.el9_5.6.noarch.rpm
MD5: 70dc3381d0b0e1ab36b48df70388a043
SHA-256: 7442ceee7a574610bfbbb2598cee10f66c29cd5d3ec3ebfa63927450c0da6370
Size: 15.39 kB - fence-agents-ifmib-4.10.0-76.el9_5.6.noarch.rpm
MD5: a0fe2bbb2a706ad33912cf3a821141f6
SHA-256: b6ba5e252ebd5aa7cd441d45c0a0f9abaeaa17b49bbcb7996848463e076d479b
Size: 14.39 kB - fence-agents-ilo2-4.10.0-76.el9_5.6.noarch.rpm
MD5: a22a2f491644db5e0f716412aeb6cc11
SHA-256: c3ec312cde1006a9e2640c18c358db6eb14033d683e04995c3426b786e8f035d
Size: 16.35 kB - fence-agents-ilo-moonshot-4.10.0-76.el9_5.6.noarch.rpm
MD5: 6348e63d9dfe87b3d3f22d537e5d1f67
SHA-256: a6e6172980f63d35a007a5bc7d2a24b55defe02fbe2bcdcd4fdf24e7e05c5d84
Size: 13.62 kB - fence-agents-ilo-mp-4.10.0-76.el9_5.6.noarch.rpm
MD5: 4b9cb6a322bb9b7588a638e97b28b905
SHA-256: 6a02fb80d9f61249b9dc49f59f31a772d8660585877a5ecda230ec495669805b
Size: 13.36 kB - fence-agents-ilo-ssh-4.10.0-76.el9_5.6.noarch.rpm
MD5: 129cce594344478009b549ac193f3928
SHA-256: 9515cd6111cd40b94d09f3d8826323194a744d9655e288edef625e8b37d5a032
Size: 19.96 kB - fence-agents-intelmodular-4.10.0-76.el9_5.6.noarch.rpm
MD5: 2e0922fa525f0ca23f6e6070be507072
SHA-256: de982d2e9e1c662fee52c33043247f5f169db6f59d55c9c81bb65f9ccb44b7d8
Size: 14.19 kB - fence-agents-ipdu-4.10.0-76.el9_5.6.noarch.rpm
MD5: f022c53f50923fa4768ea18ebaa2a987
SHA-256: c385277ab08efab5984c0229b278e5ffc5332b1d826da50045d9d0886687a0c0
Size: 14.42 kB - fence-agents-ipmilan-4.10.0-76.el9_5.6.noarch.rpm
MD5: 3c46ec5ef20479ea107c6dc69dde4a0f
SHA-256: a5b63b3c28ea78e4a6d5f71951dad123941540213cc9339b5a3a5a0c77c8041c
Size: 32.34 kB - fence-agents-kdump-4.10.0-76.el9_5.6.x86_64.rpm
MD5: a5c29ed091321a87a6370ddfea18d102
SHA-256: ae49baf99db404f6f88b700afe14750469da26216d466b4fe17937a7a1389451
Size: 26.69 kB - fence-agents-kubevirt-4.10.0-76.el9_5.6.x86_64.rpm
MD5: b5f06e4edea3b552798294286110af88
SHA-256: f6fb57915a41de84cbd3243dfab8153c62b52732b7c5f2a670c586637ec9076c
Size: 6.10 MB - fence-agents-mpath-4.10.0-76.el9_5.6.noarch.rpm
MD5: de687db1f0eeac7055f2a0f36ecadbf0
SHA-256: 912cec511715262fcbdcf85db9f5e6ea365d625b24492e9c1accfa3bc0f4eb46
Size: 16.78 kB - fence-agents-openstack-4.10.0-76.el9_5.6.x86_64.rpm
MD5: c5727019c0434955d4ff031b814a3287
SHA-256: 4bc031456269eca1775e383aae12df569b98eef0e05d88eb400159a50162d95f
Size: 15.83 kB - fence-agents-redfish-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 1f32ca578980b92b8044d200bf3acdc6
SHA-256: 848a5b5c35d2fb9479f0f4f0437727d95458d675539ecf7c01db92ddedfe704c
Size: 14.73 kB - fence-agents-rhevm-4.10.0-76.el9_5.6.noarch.rpm
MD5: c9eb0d49d2168ed2e15ad87353bd65e2
SHA-256: fc2760e35ba0dc3d0f55ce24f5b79566e1d8182d5135f0e1ac0ae9358ba796e3
Size: 15.03 kB - fence-agents-rsa-4.10.0-76.el9_5.6.noarch.rpm
MD5: 83a0a5ce6ff2e6f205887a3d8ca8e042
SHA-256: eeeb51703dd0006cbd555210c5cb43efd3a3e0f257029ec84da228cfd564380a
Size: 13.75 kB - fence-agents-rsb-4.10.0-76.el9_5.6.noarch.rpm
MD5: fb8f9e798728daea0ef1786b7549c221
SHA-256: ffb7174e46d6ac1857e18528f0ea1597b49a15033adcb6c03842e1c9fc7401db
Size: 13.80 kB - fence-agents-sbd-4.10.0-76.el9_5.6.noarch.rpm
MD5: 07c48d5385846943ad2191f4e358363d
SHA-256: 93c52aede48e5f0342df66dfd15e34b989547172aaa31ecd0c2253abbc142ad1
Size: 15.43 kB - fence-agents-scsi-4.10.0-76.el9_5.6.noarch.rpm
MD5: 7772ead5006d3813d5ae6ce79f0269ec
SHA-256: bcdfb429bcdddc527e19d12658a817297b099bcc551cfd195eb22486d48be207
Size: 19.19 kB - fence-agents-virsh-4.10.0-76.el9_5.6.noarch.rpm
MD5: eef8dc382eaddc4af068f3ed8c2aa645
SHA-256: 1affc707424a4254e3a280f030581013e0dfdd57715ea382226a7e992e094837
Size: 14.33 kB - fence-agents-vmware-rest-4.10.0-76.el9_5.6.noarch.rpm
MD5: c032b667d869a51428029061584e491a
SHA-256: 228ef9c208d6ef87e27ae053bd3d52b157bc82a497c8e0504bf0cd8e06f16817
Size: 15.04 kB - fence-agents-vmware-soap-4.10.0-76.el9_5.6.noarch.rpm
MD5: a7e9c85ead3d638d9f8ccc69d67bfe7b
SHA-256: faeac15ca766dfa5b833225e0c0c1c8a6cf7a4a15ada480c573799d8f108614d
Size: 15.93 kB - fence-agents-wti-4.10.0-76.el9_5.6.noarch.rpm
MD5: d5033f790e73a90278a04b70f9ba95b0
SHA-256: 83f1fc4764325bc229e2b33b2a91ee5aecaa0b42ba0cf295eb1caaf34d2558b0
Size: 15.33 kB - fence-virt-4.10.0-76.el9_5.6.x86_64.rpm
MD5: e3a8431988e619a7a787cf09ec70ec38
SHA-256: cd3036735a5d0dd06ab5be257965d6e78f43b227575cd42d20dc05748860fd63
Size: 38.65 kB - fence-virtd-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 5bec9c92d0d55fc309c960370224cbd5
SHA-256: 87370396ac77ef62a67451d3b99aa776779bf7f1d5d3ef01dfaa40ad1a77a8b5
Size: 52.04 kB - fence-virtd-cpg-4.10.0-76.el9_5.6.x86_64.rpm
MD5: a7bf8d9b056135cf59879a28dfb00678
SHA-256: d618c9773748221a212752fc0072e32ae396a2a8c8c63b3dcc056f27219060e3
Size: 34.91 kB - fence-virtd-libvirt-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 59040d6b59d88832287f0c4987d7f512
SHA-256: d575e212892bbd253ded2eeb5521a31c1ef66d8ddc70b3ec9417f84836e55b49
Size: 31.42 kB - fence-virtd-multicast-4.10.0-76.el9_5.6.x86_64.rpm
MD5: c003dcddd413453b0a9b8bdf82e3a4e8
SHA-256: 3721c2e7f1db3961abd9bd44c3f9be3e220eb93423add31067c0ac45d91b69af
Size: 28.33 kB - fence-virtd-serial-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 7ec5a1b42502a023a41c6f5be0d93067
SHA-256: e1ca5f1cc7ae406f253bf8fe3f51ec8c0007c8aaf6975611109027dc289cbc39
Size: 31.87 kB - fence-virtd-tcp-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 8ebf89a6467620854afd7888c591f863
SHA-256: 3bed51bea6adaaeaf85aee40d00a64b9412684e6cbaeea67da1a987738a39d04
Size: 27.91 kB - ha-cloud-support-4.10.0-76.el9_5.6.x86_64.rpm
MD5: 8425a7237720e52445487a009ff7b32b
SHA-256: 666aeef0e5391b3e8bd1682f8702112175dc408999bf3ffd05a7d57decd4e5cb
Size: 48.70 MB