Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

Multiple tarfile extraction filter bypasses (filter="tar"/filter="data") #135034

Closed
Labels
triagedThe issue has been accepted as valid by a triager.type-securityA security issue
@sethmlarson

Description

@sethmlarson

Bug description:

Public issue for fixingCVE-2025-4517,CVE-2025-4330,CVE-2025-4138, andCVE-2024-12718.See full advisory on security-announce.

[edit@encukou]: Also addressesCVE-2025-4435. Sorry for leaving that out of the commit messages.

CPython versions tested on:

CPython main branch

Operating systems tested on:

No response

Linked PRs

Metadata

Metadata

Assignees

No one assigned

    Labels

    triagedThe issue has been accepted as valid by a triager.type-securityA security issue

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions


      [8]ページ先頭

      ©2009-2025 Movatter.jp