UbuntuUpdates.org

Package "python3-pkg-resources"

Name: python3-pkg-resources

Description:

Package Discovery and Resource Access using pkg_resources

Latest version: 74.1.2-1ubuntu0.1
Release: oracular (24.10)
Level: security
Repository: main
Head package: setuptools
Homepage: https://pypi.python.org/pypi/setuptools

Links


Download "python3-pkg-resources"


Other versions of "python3-pkg-resources" in Oracular

Repository Area Version
base main 74.1.2-1
updates main 74.1.2-1ubuntu0.1

Changelog

Version: 74.1.2-1ubuntu0.1 2025-05-29 08:18:03 UTC

  setuptools (74.1.2-1ubuntu0.1) oracular-security; urgency=medium

  * SECURITY UPDATE: path traversal vulnerability
    - debian/patches/CVE-2025-47273-pre1.patch: Extract
      _resolve_download_filename with test.
    - debian/patches/CVE-2025-47273.patch: Add a check to ensure the name
      resolves relative to the tmpdir.
    - CVE-2025-47273

 -- Fabian Toepfer <email address hidden> Wed, 28 May 2025 19:13:34 +0200

CVE-2025-47273 setuptools is a package that allows users to download, build, install, upgrade, and uninstall Python packages. A path traversal vulnerability in `Pac



About   -   Send Feedback to @ubuntu_updates