python3.12-3.12.9-1.el9_6.2
エラータID: AXSA:2025-10825:11
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.
Security Fix(es):
* cpython: Cpython infinite loop when parsing a tarfile (CVE-2025-8194)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2025-8194
There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs. The tar implementation would process tar archives with negative offsets without error, resulting in an infinite loop and deadlock during the parsing of maliciously crafted tar archives. This vulnerability can be mitigated by including the following patch after importing the “tarfile” module: https://gist.github.com/sethmlarson/1716ac5b82b73dbcbf23ad2eff8b33e1
Update packages.
There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs. The tar implementation would process tar archives with negative offsets without error, resulting in an infinite loop and deadlock during the parsing of maliciously crafted tar archives. This vulnerability can be mitigated by including the following patch after importing the “tarfile” module: https://gist.github.com/sethmlarson/1716ac5b82b73dbcbf23ad2eff8b33e1
N/A
SRPMS
- python3.12-3.12.9-1.el9_6.2.src.rpm
MD5: c05d45b3d95d2f130eced554f491d22c
SHA-256: 89aca0b52117fcd5541be329aee50dac3c2c5ef35103687194ec77b9c2d7d0d4
Size: 19.64 MB
Asianux Server 9 for x86_64
- python3.12-3.12.9-1.el9_6.2.i686.rpm
MD5: a9861c799527b656dc77b17547e22840
SHA-256: 96f1cde1ed9ef62d320eab421985b5b17ada08f274e5c6e12de3a36ac5567c1a
Size: 26.99 kB - python3.12-3.12.9-1.el9_6.2.x86_64.rpm
MD5: 7151b1f21826fb852a0021ba85304135
SHA-256: 445ef513cc209ae95d042f6587c1ed499932f6a83d8b969c3a6ea309c3377084
Size: 26.90 kB - python3.12-debug-3.12.9-1.el9_6.2.i686.rpm
MD5: 2056b8850e9a9fd133bd84337e64aa80
SHA-256: cedfde7ef5f2237e88c6afe556ed81836f553b2f1c41ac7e53d954df2ed92fd8
Size: 3.55 MB - python3.12-debug-3.12.9-1.el9_6.2.x86_64.rpm
MD5: d46edb954a02b0adffb707b5021a2ff9
SHA-256: e354925c3141633a47db3dafb901377fcafd981e0f472f5bab7dd1c3fa52ed59
Size: 3.72 MB - python3.12-devel-3.12.9-1.el9_6.2.i686.rpm
MD5: c1fedb4e71b2c0eea20dec96c20385fc
SHA-256: b023d389e3489b212aaa3cba8efff6713983ca0b3b698756f094295f03325f1a
Size: 328.30 kB - python3.12-devel-3.12.9-1.el9_6.2.x86_64.rpm
MD5: 25f7f478b4d0f32c7f6159c74408a899
SHA-256: 85f756e9741fb81be67a665a12a838f0817214167bc24158e7f1e83ff1b84bc5
Size: 328.26 kB - python3.12-idle-3.12.9-1.el9_6.2.i686.rpm
MD5: fbe33935e6c063bef898bdb8dc17a431
SHA-256: 1fb3258f64f67ca52306a84ef187c00f99bbe077c0593d5c98be0ef1ce2da20a
Size: 1.07 MB - python3.12-idle-3.12.9-1.el9_6.2.x86_64.rpm
MD5: 586912c77aecfc0f8be030f05cf288a5
SHA-256: b31e8848d934e838d79f737d11b531a52c5ee9ea1d35da89f40850148fa522ca
Size: 1.07 MB - python3.12-libs-3.12.9-1.el9_6.2.i686.rpm
MD5: d518bfd13acbc9bcbcb80a993ef5393b
SHA-256: 478bcf8765e684019043c4b2f16de77453222e070f8f63b3ee028c628de4b130
Size: 9.73 MB - python3.12-libs-3.12.9-1.el9_6.2.x86_64.rpm
MD5: 0465202fa5736be851dd3add1d1fda01
SHA-256: 4e15c51cc55fded0a998d07cb38a3740b12015eca3315a1eb3723d8a69969a5c
Size: 9.69 MB - python3.12-test-3.12.9-1.el9_6.2.i686.rpm
MD5: d7e3b666bf39b3c7702524c262ca670b
SHA-256: 0904c1f06fb23892b52eeca52622ca488c4aa0a06c3559b32322deeed8ea1b5b
Size: 15.74 MB - python3.12-test-3.12.9-1.el9_6.2.x86_64.rpm
MD5: 62f14545b5d790c39fc7cf7c5e1ae503
SHA-256: 9285f09ad93fd3c5f8b80352292ec7a470c1d69c5cd6dcd89428d29029e625c6
Size: 15.73 MB - python3.12-tkinter-3.12.9-1.el9_6.2.i686.rpm
MD5: 500b74d1627251b4f54399d7e188d2a2
SHA-256: 1767a2b76294ddb527de64ad23bee99db3802989181e5bff10d6115deb2dc411
Size: 423.17 kB - python3.12-tkinter-3.12.9-1.el9_6.2.x86_64.rpm
MD5: be89a9d8a049d5d4f26399875f2f0c4d
SHA-256: c0e17e4b483b1b33633401360d15bfcc425066659297f92e7e79ce32d3d3fd95
Size: 421.55 kB