python3.11-3.11.11-2.el9_6.2
エラータID: AXSA:2025-10821:09
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.
Security Fix(es):
* cpython: Cpython infinite loop when parsing a tarfile (CVE-2025-8194)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2025-8194
There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs. The tar implementation would process tar archives with negative offsets without error, resulting in an infinite loop and deadlock during the parsing of maliciously crafted tar archives. This vulnerability can be mitigated by including the following patch after importing the “tarfile” module: https://gist.github.com/sethmlarson/1716ac5b82b73dbcbf23ad2eff8b33e1
Update packages.
There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs. The tar implementation would process tar archives with negative offsets without error, resulting in an infinite loop and deadlock during the parsing of maliciously crafted tar archives. This vulnerability can be mitigated by including the following patch after importing the “tarfile” module: https://gist.github.com/sethmlarson/1716ac5b82b73dbcbf23ad2eff8b33e1
N/A
SRPMS
- python3.11-3.11.11-2.el9_6.2.src.rpm
MD5: 6bd18ff341bf7bbff7aa81399b8339f1
SHA-256: f6bf2833e3a7660c97eb2635184a7dd564d1c0cf7975f58b36922be816924615
Size: 19.24 MB
Asianux Server 9 for x86_64
- python3.11-3.11.11-2.el9_6.2.i686.rpm
MD5: b246ae69ee6c0e25856bf8773ef72543
SHA-256: 1b6a1b7beafd6fc4cd70f546dc09513bfd1912cfcde0d5ec9af680f373eddf68
Size: 24.83 kB - python3.11-3.11.11-2.el9_6.2.x86_64.rpm
MD5: 054c36c9f485ed4ccdcb90ce6c54919e
SHA-256: bcfba9f3180c57a88a604ec66daf11cfb793d4f0f4b329460d97fc308d62eaef
Size: 24.75 kB - python3.11-debug-3.11.11-2.el9_6.2.i686.rpm
MD5: 47a0f65b71731bd828b8a1083735a13c
SHA-256: 9978d36ca86f9d16487cdf712f8bdaaf242b8b01f990a59f64139beb78d523ff
Size: 3.25 MB - python3.11-debug-3.11.11-2.el9_6.2.x86_64.rpm
MD5: 9a73462af92c557bf822a8bbabbc8655
SHA-256: 257f5439ce3ffca25c261f253553c27ea3ae0e1fa879e218fdbd4fb25c8dd710
Size: 3.40 MB - python3.11-devel-3.11.11-2.el9_6.2.i686.rpm
MD5: 9df77d1d741cdf007225b22875df97fe
SHA-256: 38faf2d26d77585ced99b9f20d7388a064efcec06d8638f550fd72a8ffee6ba9
Size: 279.63 kB - python3.11-devel-3.11.11-2.el9_6.2.x86_64.rpm
MD5: cee52431047bb7c6c8bb475f1e8b6f89
SHA-256: a0deead6412a4af907a5ce88e28af56b5d317dc0e121363b4a7f935674bbb66a
Size: 279.64 kB - python3.11-idle-3.11.11-2.el9_6.2.i686.rpm
MD5: c8c4ed77a4796e3d792e8cb7b0650b7c
SHA-256: d03c0b79010e38ae1a2b38798805b9bd2223b3d9970e9f4ac8af5ea2d4a65167
Size: 1.09 MB - python3.11-idle-3.11.11-2.el9_6.2.x86_64.rpm
MD5: befc5ae063767fb612b2d42a3f6f3414
SHA-256: ca96bebb28d5f9326d10cba819563959e38cb95b02f72c3ffd34dcb717309020
Size: 1.09 MB - python3.11-libs-3.11.11-2.el9_6.2.i686.rpm
MD5: f1c6dc309e3863d63fe1b13609aad159
SHA-256: 821b1f6bf4f548fd8abec3da33ab02cce883c9f96b951d3d87ab0152cb1aef97
Size: 10.23 MB - python3.11-libs-3.11.11-2.el9_6.2.x86_64.rpm
MD5: ad2e34aa7c2ddbe0ff9b33881240df54
SHA-256: 6e61392b265d61e5ebfcbe672161623ac10618e7c2fac60e9c907e103c71a06d
Size: 10.17 MB - python3.11-test-3.11.11-2.el9_6.2.i686.rpm
MD5: 78b92a1c75f8683a74680901268b08c8
SHA-256: c83e67c93b2613e987380220878a7c671dca77ae7d3a791641ccc622dabe8049
Size: 15.34 MB - python3.11-test-3.11.11-2.el9_6.2.x86_64.rpm
MD5: e8af541911860077113a09613c6285c2
SHA-256: b9b3b4aea88703a517f48b80d38df1bc555e158d664125af4e22033130ca4d48
Size: 15.33 MB - python3.11-tkinter-3.11.11-2.el9_6.2.i686.rpm
MD5: 5f3954f206808c4ef1b74af45b44214d
SHA-256: 7f745d6b33068414b2afed63e60694048dbd3f82b300e7161694c484883f219d
Size: 427.48 kB - python3.11-tkinter-3.11.11-2.el9_6.2.x86_64.rpm
MD5: f922370f26af467a5ac118c45c21a090
SHA-256: 5bbf68f2b8c921d562aed9fcb07b44334e157a1655f8365106a6b0b39786a006
Size: 425.56 kB