CLSA-2025-1762958654

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2025-1762958654.json
JSON Data
https://api.test.osv.dev/v1/vulns/CLSA-2025-1762958654
Upstream
Published
2025-11-12T14:44:18Z
Modified
2026-05-27T11:17:45.274801127Z
Summary
python3: Fix of 5 CVEs
Details
  • CVE-2024-12718, CVE-2025-4138, CVE-2025-4330, CVE-2025-4435, CVE-2025-4517: fix multiple tarfile extraction filter bypasses (filter="tar"/filter="data")
References

Affected packages

TuxCare:OracleLinux:7
python3

Package

Name
python3
Purl
pkg:rpm/tuxcare/python3?distro=oraclelinux-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-21.0.5.el7_9.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2025-1762958654.json"
python3-debug

Package

Name
python3-debug
Purl
pkg:rpm/tuxcare/python3-debug?distro=oraclelinux-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-21.0.5.el7_9.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2025-1762958654.json"
python3-devel

Package

Name
python3-devel
Purl
pkg:rpm/tuxcare/python3-devel?distro=oraclelinux-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-21.0.5.el7_9.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2025-1762958654.json"
python3-idle

Package

Name
python3-idle
Purl
pkg:rpm/tuxcare/python3-idle?distro=oraclelinux-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-21.0.5.el7_9.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2025-1762958654.json"
python3-libs

Package

Name
python3-libs
Purl
pkg:rpm/tuxcare/python3-libs?distro=oraclelinux-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-21.0.5.el7_9.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2025-1762958654.json"
python3-test

Package

Name
python3-test
Purl
pkg:rpm/tuxcare/python3-test?distro=oraclelinux-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-21.0.5.el7_9.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2025-1762958654.json"
python3-tkinter

Package

Name
python3-tkinter
Purl
pkg:rpm/tuxcare/python3-tkinter?distro=oraclelinux-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.6.8-21.0.5.el7_9.tuxcare.els2

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/oraclelinux7els/CLSA-2025-1762958654.json"