Release date:
2025-09-17 09:39:20 UTC
Description:
* SECURITY UPDATE: defect in 'tarfile' module leads to infinite loop and
deadlock in parsing of maliciously crafted tar archives
- debian/patches/CVE-2025-8194.patch: Validate archives to ensure member
offsets are non-negative
- CVE-2025-8194
Updated packages:
-
idle-python3.6_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_all.deb
sha:bafaf3449d6d20d9cb29021ea97df79d40ee193c
-
libpython3.6_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_amd64.deb
sha:44df5e62fb57df141a67906f3726e687c34d596c
-
libpython3.6-dev_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_amd64.deb
sha:cbaf1a92a1afcf39fde50edfe45cc547c4b2961d
-
libpython3.6-minimal_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_amd64.deb
sha:06074850c3463250d8e4969f85a557def7e50709
-
libpython3.6-stdlib_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_amd64.deb
sha:232dd128573d228f8fd54f10105b43e94334a9f3
-
libpython3.6-testsuite_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_all.deb
sha:30d0f59ba83d348bce76d3a3712a285835b9f24a
-
python3.6_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_amd64.deb
sha:460d6a8985f6090e60a687865d98e9135792dd20
-
python3.6-dev_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_amd64.deb
sha:5f3c21e224d342e4504abbd544cd6ee1851d953c
-
python3.6-doc_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_all.deb
sha:1b15edb68edcc8a5583090b78fa06e321e0716bd
-
python3.6-examples_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_all.deb
sha:ab54cf9f5cb103f6b8247bb837d5971d9fefd738
-
python3.6-minimal_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_amd64.deb
sha:f839eeab287b08caef9b3fee7f137af4e4050e33
-
python3.6-venv_3.6.9-1~18.04ubuntu1.12+tuxcare.els17_amd64.deb
sha:509e702e950d96952d34e429a25383c10cdfeab8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.