VDB
BDU%3A2025-09687
BDU%3A2025-09687
PUBLISHED
CVSS 7.800000190734863 HIGH
Уязвимость модуля tarfile интерпретатора языка программирования Python (CPython), позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 2.0
7.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», Python Software Foundation | Astra Linux Special Edition (запись в едином реестре российских программ №369), CPython |
Timeline
- Aug 13, 2025 CVE Published
- Feb 16, 2026 CVE Updated
References
- https://github.com/python/cpython/commit/7040aa54f14676938970e10c5f74ea93cd56aa38 url
- https://github.com/python/cpython/commit/cdae923ffe187d6ef916c0f665a31249619193fe url
- https://mail.python.org/archives/list/security-announce@python.org/thread/ZULLF3IZ726XP5EY7XJ7YIN3K5MDYR2D/ url
- https://github.com/python/cpython/pull/137027 url
- https://wiki.astralinux.ru/astra-linux-se38-bulletin-2026-0126SE38 url
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2025-1202SE17 advisory
- https://github.com/python/cpython/issues/130577 url
- https://wiki.astralinux.ru/astra-linux-se18-bulletin-2025-1113SE18 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1216SE349 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1216SE47 advisory