[CLSA-2026:1781083045] python3.11: Fix of CVE-2025-13462
Type:
security
Severity:
Critical
Release date:
2026-06-10 09:19:07 UTC
Description:
- CVE-2025-13462: tarfile: skip AREGTYPE->DIRTYPE normalization while reading GNU LONGNAME/LONGLINK and PAX follow-up headers, so a longname regular file is not misparsed as a directory
CVEs fixed:
Updated packages:
  • python3.11-3.11.11-2.el9_6.2.tuxcare.els12.i686.rpm
    sha:c7ef8a642a96839fd4f19f43100b7fdd3aa216823431f338b1002015d86e7be8
  • python3.11-3.11.11-2.el9_6.2.tuxcare.els12.x86_64.rpm
    sha:f7e91b74439cf90ba9a18988097a1f3503f62f90879f9fb6d89f40b6b9ada3f2
  • python3.11-debug-3.11.11-2.el9_6.2.tuxcare.els12.i686.rpm
    sha:6e2f5a4a86fd6e543d69550e56b609ea5ff4afbf0ad77cddab5e6ea1369b0b6d
  • python3.11-debug-3.11.11-2.el9_6.2.tuxcare.els12.x86_64.rpm
    sha:f3abf63e309e109353d45c398fd539ea976bb8074675c75a238f3bdd1ebd831d
  • python3.11-devel-3.11.11-2.el9_6.2.tuxcare.els12.i686.rpm
    sha:4aa2464c02590630e8be86de45a50134942f1eba1d064cfed3c0ced8d02e5f47
  • python3.11-devel-3.11.11-2.el9_6.2.tuxcare.els12.x86_64.rpm
    sha:e175a0bf9aa3a6ce0fe97e4f83ec33b454884802fd20339385f0d9297274858e
  • python3.11-idle-3.11.11-2.el9_6.2.tuxcare.els12.i686.rpm
    sha:690443e3ff9aa0d2fc1964895db73de8abb35e97ffb0316c32d24c91fac0c840
  • python3.11-idle-3.11.11-2.el9_6.2.tuxcare.els12.x86_64.rpm
    sha:4b7fa876c0fc54309d166bc60bbd67374e8987444c63ca714059ef494972d280
  • python3.11-libs-3.11.11-2.el9_6.2.tuxcare.els12.i686.rpm
    sha:5c4dae7b71053c0bbd1cee3204971d3cec0322d1ceef936e42d2d4a1a447650f
  • python3.11-libs-3.11.11-2.el9_6.2.tuxcare.els12.x86_64.rpm
    sha:d8cd35bf9e4abff26d3402357625c1a69abf13b5ba0084982ddeacbada95b093
  • python3.11-test-3.11.11-2.el9_6.2.tuxcare.els12.i686.rpm
    sha:796175ca351a9a0085345a2d06af3d1ecc6b2f3e9935b28a768289983462d950
  • python3.11-test-3.11.11-2.el9_6.2.tuxcare.els12.x86_64.rpm
    sha:f59aea656291772bc6820958ea252922a4e8c5eb3dfe73cd21fb657fd4547666
  • python3.11-tkinter-3.11.11-2.el9_6.2.tuxcare.els12.i686.rpm
    sha:1ef92b6b72dd538799ce11d80baf5d2ee049fcec56947bff4891602435a629f9
  • python3.11-tkinter-3.11.11-2.el9_6.2.tuxcare.els12.x86_64.rpm
    sha:91fe64732c932e677d84b3611b71455f55fb7c815c8c0d5be551889cc152ddad
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.