[CLSA-2025:1758101854] Fix CVE(s): CVE-2025-8194
Type:
security
Severity:
Important
Release date:
2025-09-17 09:37:38 UTC
Description:
* SECURITY UPDATE: defect in TarFile module leading to infinite loop and deadlock - debian/patches/CVE-2025-8194.patch: Validate archives to ensure member offsets are non-negative - CVE-2025-8194
Updated packages:
  • idle-python3.5_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_all.deb
    sha:aef1baf70ada7d5c393da9ad9d1ad7daea2d340d
  • libpython3.5_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_amd64.deb
    sha:722fbc2d8a502cd8ff7ce34c0b5fdcc65d86e820
  • libpython3.5-dev_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_amd64.deb
    sha:95bcded1ea1cb81516abec72f0d86cb535f50f2b
  • libpython3.5-minimal_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_amd64.deb
    sha:94f714cbe2361f6d8b37f8805d8e450f5fec61cb
  • libpython3.5-stdlib_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_amd64.deb
    sha:0db7a0ac8e463bcc70dfa1343eb46273b9af62d0
  • libpython3.5-testsuite_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_all.deb
    sha:5ef821abb1cd8d29b4ea9682d9db08f0e9f22753
  • python3.5_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_amd64.deb
    sha:0e2f224372f8f1b3567c41f71afb0b0c4fe3ab54
  • python3.5-dev_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_amd64.deb
    sha:96ba748b8f3bb0d5ba1b1140733eb31d1ef750c6
  • python3.5-doc_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_all.deb
    sha:de3a82c1630c6445620a77e72fc6e965cbcdcdbb
  • python3.5-examples_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_all.deb
    sha:316f5c31b01d888bf480a4a99e75ecd8ea63a8ac
  • python3.5-minimal_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_amd64.deb
    sha:27217a58a57df864e00de4d5bdb4ffe54eeca789
  • python3.5-venv_3.5.2-2ubuntu0~16.04.13+tuxcare.els21_amd64.deb
    sha:b7b96bfa21462ed366feb175ea7e72fb6ea58078
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.