Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 470
Alerts This Week
Warning Icon 1 470

Mageia 9: MGASA-2025-0094 moderate: python-jinja2 sandbox breakout

mageia
Calendar Grey March 12, 2025
Scroller Mageia
Recent updates to the python-jinja2 package have addressed a sandbox security vulnerability in Mageia 9, which was reported on March 12, 2025.
Jinja sandbox breakout through attr filter selecting format method

Summary

Jinja sandbox breakout through attr filter selecting format method. (CVE-2025-27516)

References

- https://bugs.mageia.org/show_bug.cgi?id=34081

- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/MUH4YM6G3UIVK2776BABUYJKVIBPTUT5/

- https://www.cve.org/CVERecord?id=CVE-2025-27516

Resolution

SRPMS

- 9/core/python-jinja2-3.1.6-1.mga9

Publication date: 12 Mar 2025
URL: https://advisories.mageia.org/MGASA-2025-0094.html
Type: security
CVE: CVE-2025-27516

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.