Pop-Up Thingie

>>> Magnum BBS <<<
  • Home
  • Forum
  • Files
  • Log in

  1. Forum
  2. Usenet
  3. LINUX.DEBIAN.BUGS.DIST
  • Bug#1109377: pycares: CVE-2025-48945

    From =?UTF-8?Q?Moritz_M=C3=BChlenhoff?=@21:1/5 to All on Wed Jul 16 11:30:02 2025
    Package: pycares
    X-Debbugs-CC: [email protected]
    Severity: important
    Tags: security

    Hi,

    The following vulnerability was published for pycares.

    CVE-2025-48945[0]:
    | pycares is a Python module which provides an interface to c-ares.
    | c-ares is a C library that performs DNS requests and name
    | resolutions asynchronously. Prior to version 4.9.0, pycares is
    | vulnerable to a use-after-free condition that occurs when a Channel
    | object is garbage collected while DNS queries are still pending.
    | This results in a fatal Python error and interpreter crash. The
    | vulnerability has been fixed in pycares 4.9.0 by implementing a safe
    | channel destruction mechanism.

    https://github.com/saghul/pycares/security/advisories/GHSA-5qpg-rh4j-qp35
    Fixed by: https://github.com/saghul/pycares/commit/ebfd7d71eb8e74bc1057a361ea79a5906db510d4 (v4.9.0)


    If you fix the vulnerability please also make sure to include the
    CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

    For further information see:

    [0] https://security-tracker.debian.org/tracker/CVE-2025-48945
    https://www.cve.org/CVERecord?id=CVE-2025-48945

    Please adjust the affected versions in the BTS as needed.

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)
  • Who's Online

  • Recent Visitors

    • Krenn
      Tue Jun 9 11:18:15 2026
      from Sydney, Nsw via Telnet
    • Bob Worm
      Tue Jun 9 10:31:07 2026
      from Wales, Uk via Telnet
    • Centurion
      Mon Jun 8 23:30:43 2026
      from Berea, Ohio via Telnet
    • Centurion
      Mon Jun 8 21:33:11 2026
      from Berea, Ohio via Telnet
    • Bob Worm
      Mon Jun 8 20:15:00 2026
      from Wales, Uk via Telnet
    • Bob Worm
      Mon Jun 8 16:33:22 2026
      from Wales, Uk via Telnet
    • Bob Worm
      Mon Jun 8 14:11:46 2026
      from Wales, Uk via Telnet
    • Krenn
      Mon Jun 8 11:22:02 2026
      from Sydney, Nsw via Telnet
  • System Info

    Sysop: Keyop
    Location: Huddersfield, West Yorkshire, UK
    Users: 715
    Nodes: 16 (2 / 14)
    Uptime: 44:15:48
    Calls: 12,111
    Calls today: 2
    Files: 15,010
    Messages: 6,518,458

© >>> Magnum BBS <<<, 2026