python3.12-3.12.9-1.el9
エラータID: AXSA:2025-10388:05
リリース日:
2025/07/01 Tuesday - 22:50
題名:
python3.12-3.12.9-1.el9
影響のあるチャネル:
MIRACLE LINUX 9 for x86_64
Severity:
Moderate
Description:
以下項目について対処しました。
[Security Fix]
- Python の urllib.parse.urlsplit() 標準ライブラリ関数および
urlparse() 標準ライブラリ関数には、RFC 3986 では許容されていない
角括弧を含むドメイン名を処理してしまう問題があるため、リモートの
攻撃者により、細工されたドメイン名の処理を介して、HTTP リクエスト
スマグリング攻撃などを可能とする脆弱性が存在します。
(CVE-2025-0938)
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2025-0938
The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.
The Python standard library functions `urllib.parse.urlsplit` and `urlparse` accepted domain names that included square brackets which isn't valid according to RFC 3986. Square brackets are only meant to be used as delimiters for specifying IPv6 and IPvFuture hosts in URLs. This could result in differential parsing across the Python URL parser and other specification-compliant URL parsers.
追加情報:
N/A
ダウンロード:
SRPMS
- python3.12-3.12.9-1.el9.src.rpm
MD5: 259a210dd9c08fe8636b86267be25410
SHA-256: 0b3a9398876c7421fb3de86d46065aa33350698fd86afa90aae8a6a7525a528d
Size: 19.61 MB
Asianux Server 9 for x86_64
- python3.12-3.12.9-1.el9.i686.rpm
MD5: ea591166f9045103cfd34f11fdca24b1
SHA-256: a8de5610ab0691416a3c57052ce6113cd1f4cd8a056f6fdfb8405a60c1c90cba
Size: 26.32 kB - python3.12-3.12.9-1.el9.x86_64.rpm
MD5: dc9b25ba6a4fcc3fec00a901e2b408c5
SHA-256: 47130b6a0d6b85dba13c7ce0cfcb78e2122ac0046f310298e29bd8b652786e40
Size: 26.25 kB - python3.12-debug-3.12.9-1.el9.i686.rpm
MD5: b25d865bb3e836a2f913ece8de768726
SHA-256: d2cc72d6d63beb65e55a5467dce03f3eec2705d8c3fc5836020c538c0a383909
Size: 3.54 MB - python3.12-debug-3.12.9-1.el9.x86_64.rpm
MD5: d42f1efab51fb0557627143d30d77874
SHA-256: 33a4d0eefbab301042f86c4a4fc374d4dceaf10cf29d3c0e09d1543091a12d05
Size: 3.71 MB - python3.12-devel-3.12.9-1.el9.i686.rpm
MD5: 5da18016fa46feaca64582c8a9c43c82
SHA-256: e5a759c8ebf01d7772e4f41245ae027eab112b550c396e61f639359b192aac53
Size: 327.74 kB - python3.12-devel-3.12.9-1.el9.x86_64.rpm
MD5: 2bf681cf034eba0295fd9880e8dfa852
SHA-256: 0ffa66581bb8c46dfc9103780312596521babb8958ff3c7fd01f174e5b2c3313
Size: 327.74 kB - python3.12-idle-3.12.9-1.el9.i686.rpm
MD5: 1f6930d7f98edaa5c861d84936f35073
SHA-256: 0e8441017d35da959011cc6c06da9487a074ce6a84586e2f23564840287745bc
Size: 1.07 MB - python3.12-idle-3.12.9-1.el9.x86_64.rpm
MD5: a75fcd2e1e7f46c4a3cdae55a11920cf
SHA-256: bc45926a2d5ff1c771194652a74298414d71cc2734a14476ab81f9cad0448a86
Size: 1.07 MB - python3.12-libs-3.12.9-1.el9.i686.rpm
MD5: dd9903fe96cec4e82c4635e19a4ba9d1
SHA-256: 6ca26a6410e700e9e3f04e455d89880a92bfb788af7ac22eee66841800afa0de
Size: 9.72 MB - python3.12-libs-3.12.9-1.el9.x86_64.rpm
MD5: ef11348a36633cb0fedf616a806ce856
SHA-256: 75e989aafb4aeeade96efec8188ae30fd1e88139a77065277d25a42fecff25fc
Size: 9.68 MB - python3.12-test-3.12.9-1.el9.i686.rpm
MD5: 43ef3dfcbe3882d773217082c8503d08
SHA-256: 4f4c783fc3b2fefba5540e126b808ccb7e425ac81b705c7142ff719fcea82766
Size: 15.72 MB - python3.12-test-3.12.9-1.el9.x86_64.rpm
MD5: 8bb6ef09fcd73bec24e3a2976c31cfa9
SHA-256: 28e5fd44fbc832891bec3b6b5ac9731c9554df5aaad7e7d9ce7ff040fe5c62e2
Size: 15.71 MB - python3.12-tkinter-3.12.9-1.el9.i686.rpm
MD5: 5cf5c5a4aa6a5c7581c53cb280787aa5
SHA-256: c055b337401bc5da25fb24729a5bf09b42383502725d33a23b45f4d9c6a36dd6
Size: 422.46 kB - python3.12-tkinter-3.12.9-1.el9.x86_64.rpm
MD5: 172eeee0fb64d75960804f42e4552cdf
SHA-256: 202c0f25fe919f706ca93b2e18e9cbefe5be053b0c6aa66f690d9cd96f2dab80
Size: 420.70 kB