[SECURITY] Fedora 41 Update: python3.13-3.13.7-1.fc41

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-62fe746ed0
2025-08-26 01:54:53.803668+00:00
--------------------------------------------------------------------------------

Name        : python3.13
Product     : Fedora 41
Version     : 3.13.7
Release     : 1.fc41
URL         : https://www.python.org/
Summary     : Version 3.13 of the Python interpreter
Description :
Python 3.13 is an accessible, high-level, dynamically typed, interpreted
programming language, designed with an emphasis on code readability.
It includes an extensive standard library, and has a vast ecosystem of
third-party libraries.

--------------------------------------------------------------------------------
Update Information:

Python 3.13.7 is the seventh maintenance release of 3.13.
3.13.7 is an expedited release to fix a significant issue with the 3.13.6
release:
gh-137583: Regression in ssl module between 3.13.5 and 3.13.6: reading from a
TLS-encrypted connection blocks
A few other bug fixes (which would otherwise have waited until the next release)
are also included.
3.13.6 is the sixth maintenance release of 3.13, containing around 200 bugfixes,
build improvements and documentation changes since 3.13.5.
This update contains fix for https://www.cve.org/CVERecord?id=CVE-2025-8194
--------------------------------------------------------------------------------
ChangeLog:

* Thu Aug 14 2025 Miro HronÄ?ok <mhroncok@xxxxxxxxxx> - 3.13.7-1
- Update to 3.13.7
* Thu Aug  7 2025 Tomáš HrnÄ?iar <thrnciar@xxxxxxxxxx> - 3.13.5-5
- Update to 3.13.6
* Mon Jul 28 2025 Miro HronÄ?ok <mhroncok@xxxxxxxxxx> - 3.13.5-4
- Fix CVE-2025-8194: Tarfile infinite loop during parsing with negative member offset
* Fri Jul 25 2025 Fedora Release Engineering <releng@xxxxxxxxxxxxxxxxx> - 3.13.5-3
- Rebuilt for https://fedoraproject.org/wiki/Fedora_43_Mass_Rebuild
* Wed Jun 25 2025 Karolina Surma <ksurma@xxxxxxxxxx> - 3.13.5-2
- Conditionally skip tests not working with the older expat version
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2384068 - CVE-2025-8194 python3.13: Cpython infinite loop when parsing a tarfile [fedora-41]
        https://bugzilla.redhat.com/show_bug.cgi?id=2384068
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-62fe746ed0' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
package-announce mailing list -- package-announce@xxxxxxxxxxxxxxxxxxxxxxx
To unsubscribe send an email to package-announce-leave@xxxxxxxxxxxxxxxxxxxxxxx
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@xxxxxxxxxxxxxxxxxxxxxxx
Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue

[Index of Archives]     [Fedora Users]     [Fedora Legacy]     [Fedora Desktop]     [Fedora SELinux]     [Big List of Linux Books]     [Yosemite News]     [Yosemite Photos]     [KDE Users]

  Powered by Linux