Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Fedora 41 python3.12: FEDORA-2025-3436f3d2b4 critical exploit fix

fedora
Calendar Grey June 14, 2025
Dist Fedora Esm H88
Fedora 41 rolls out python3.12.11 update addressing various tarfile extraction problems along with improved features.
Update to 3.12.11

Summary

Python 3.12 is an accessible, high-level, dynamically typed, interpreted

programming language, designed with an emphasis on code readability.

It includes an extensive standard library, and has a vast ecosystem of

third-party libraries.

The python3.12 package provides the "python3.12" executable: the reference

interpreter for the Python language, version 3.

The majority of its standard library is provided in the python3.12-libs package,

which should be installed automatically along with python3.12.

The remaining parts of the Python standard library are broken out into the

python3.12-tkinter and python3.12-test packages, which may need to be installed

separately.

Documentation for Python is provided in the python3.12-docs package.

Packages containing additional libraries for Python are generally named with

the "python3.12-" prefix.

Update Information:

Update to 3.12.11. gh-135034: [CVE 2024-12718] [CVE 2025-4138] [CVE 2025-4330] [CVE 2025-4435] [CVE 2025-4517] Fixes multiple issues that allowed tarfile extraction filters (filter="data" and filter="tar") to be bypassed using crafted symlinks and hard links. gh-133767: Fix use-after-free in the “unicode-escape” decoder with a non-“strict” error handler. gh-128840: Short-circuit the processing of long IPv6 addresses early in ipaddress to prevent excessive memory consumption and a minor denial-of-service.

Change Log

* Wed Jun 4 2025 Tomáš Hrnčiar - 3.12.11-1 - Update to 3.12.11

References

Fedora Update Notification FEDORA-2025-3436f3d2b4 2025-06-14 01:51:14.531294+00:00
Name : python3.12 Product : Fedora 41 Version : 3.12.11 Release : 1.fc41 URL : https://www.python.org/ Summary : Version 3.12 of the Python interpreter Description : Python 3.12 is an accessible, high-level, dynamically typed, interpreted programming language, designed with an emphasis on code readability. It includes an extensive standard library, and has a vast ecosystem of third-party libraries.
The python3.12 package provides the "python3.12" executable: the reference interpreter for the Python language, version 3. The majority of its standard library is provided in the python3.12-libs package, which should be installed automatically along with python3.12. The remaining parts of the Python standard library are broken out into the python3.12-tkinter and python3.12-test packages, which may need to be installed separately.
Documentation for Python is provided in the python3.12-docs package.
Packages containing additional libraries for Python are generally named with the "python3.12-" prefix.

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-3436f3d2b4' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: python3.12
Product: Fedora 41
Version: 3.12.11
Release: 1.fc41
Summary: Version 3.12 of the Python interpreter

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here