Collected: Wed 23 Aug 2023 06:51:31 -0400 Bug URL:https://bugs.gentoo.org/912976 Severity:Moderate CVE(s): CVE-2023-41105 An issue was discovered in Python 3.11 through 3.11.4. If a path containing '\0' bytes is passed to os.path.normpath(), the path will be truncated unexpectedly at the first '\0' byte. There are plausible cases in which an application would have rejected a filename for security reasons in Python 3.10.x or earlier, but that filename is no longer rejected in Python 3.11.x. https://github.com/python/cpython/pull/107982 https://github.com/python/cpython/pull/107983 https://github.com/python/cpython/pull/107981 https://github.com/python/cpython/issues/106242 https://mail.python.org/archives/list/security-announce@python.org/thread/D6CDW3ZZC5D444YGL3VQUY6D4ECMCQLD/
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2023:6494 https://access.redhat.com/errata/RHSA-2023:6494
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2023:7024 https://access.redhat.com/errata/RHSA-2023:7024