CVE-2025-4435

Publication date

2025-06-03 12:59:06

Family

PSF

State

PUBLISHED

Description

When using a TarFile.errorlevel = 0 and extracting with a filter the documented behavior is that any filtered members would be skipped and not extracted. However the actual behavior of TarFile.errorlevel = 0 in affected versions is that the member would still be extracted and not skipped.