[SECURITY] Fedora 42 Update: python3.13-3.13.6-1.fc42

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-1a9ad70c05
2025-08-13 01:15:46.336971+00:00
--------------------------------------------------------------------------------

Name        : python3.13
Product     : Fedora 42
Version     : 3.13.6
Release     : 1.fc42
URL         : https://www.python.org/
Summary     : Version 3.13 of the Python interpreter
Description :
Python 3.13 is an accessible, high-level, dynamically typed, interpreted
programming language, designed with an emphasis on code readability.
It includes an extensive standard library, and has a vast ecosystem of
third-party libraries.

--------------------------------------------------------------------------------
Update Information:

3.13.6 is the sixth maintenance release of 3.13, containing around 200 bugfixes,
build improvements and documentation changes since 3.13.5.
This update contains fix for https://www.cve.org/CVERecord?id=CVE-2025-8194
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug  7 2025 Tomáš HrnÄ?iar <thrnciar@xxxxxxxxxx> - 3.13.5-5
- Update to 3.13.6
* Mon Jul 28 2025 Miro HronÄ?ok <mhroncok@xxxxxxxxxx> - 3.13.5-4
- Fix CVE-2025-8194: Tarfile infinite loop during parsing with negative member offset
* Fri Jul 25 2025 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 3.13.5-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild
* Wed Jun 25 2025 Karolina Surma <ksurma@xxxxxxxxxx> - 3.13.5-2
- Conditionally skip tests not working with the older expat version
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2384078 - CVE-2025-8194 python3.13: Cpython infinite loop when parsing a tarfile [fedora-42]
        https://bugzilla.redhat.com/show_bug.cgi?id=2384078
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-1a9ad70c05' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
package-announce mailing list -- package-announce@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to package-announce-leave@xxxxxxxxxxxxxxxxxxxxxxx
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@xxxxxxxxxxxxxxxxxxxxxxx
Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue

[Index of Archives]     [Fedora Users]     [Fedora Legacy]     [Fedora Desktop]     [Fedora SELinux]     [Big List of Linux Books]     [Yosemite News]     [Yosemite Photos]     [KDE Users]

  Powered by Linux