UbuntuUpdates.org

Package "python3.13"

Name: python3.13

Description:

Interactive high-level object-oriented language (version 3.13)

Latest version: 3.13.7-1ubuntu0.1
Release: questing (25.10)
Level: updates
Repository: main

Links


Download "python3.13"


Other versions of "python3.13" in Questing

Repository Area Version
base main 3.13.7-1
base universe 3.13.7-1
security main 3.13.7-1ubuntu0.1
security universe 3.13.7-1ubuntu0.1
updates universe 3.13.7-1ubuntu0.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 3.13.7-1ubuntu0.1 2025-11-27 10:13:42 UTC

  python3.13 (3.13.7-1ubuntu0.1) questing-security; urgency=medium

  * SECURITY UPDATE: Possible payload obfuscation
    - debian/patches/CVE-2025-8291.patch: check consistency of
      the zip64 end of central dir record in Lib/zipfile.py,
      Lib/test/test_zipfile.py.
    - CVE-2025-8291
  * SECURITY UPDATE: Performance degradation
    - debian/patches/CVE-2025-6075.patch: fix quadratic complexity
      in os.path.expandvars() in Lib/ntpatch.py, Lib/posixpath.py,
      Lib/test/test_genericpatch.py, Lib/test/test_npath.py.
    - CVE-2025-6075

 -- Hlib Korzhynskyy <email address hidden> Mon, 24 Nov 2025 17:21:28 -0330

CVE-2025-8291 The 'zipfile' module would not check the validity of the ZIP64 End of Central Directory (EOCD) Locator record offset value would not be used to locat
CVE-2025-6075 If the value passed to os.path.expandvars() is user-controlled a performance degradation is possible when expanding environment variables.



About   -   Send Feedback to @ubuntu_updates