From d43b1c88998b9ba069b70c6043a201c3af975f68610bfa7b19284b015e6c78c6 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Mat=C4=9Bj=20Cepl?= Date: Mon, 24 Nov 2025 19:22:29 +0100 Subject: [PATCH] Add a reference to CVE-2025-8291, bsc#1251305. --- python310.changes | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/python310.changes b/python310.changes index fffa085..5274921 100644 --- a/python310.changes +++ b/python310.changes @@ -12,7 +12,8 @@ Wed Oct 15 08:43:33 UTC 2025 - Daniel Garcia - Security - gh-139700: Check consistency of the zip64 end of central directory record. Support records with “zip64 extensible data” - if there are no bytes prepended to the ZIP file. + if there are no bytes prepended to the ZIP file + (CVE-2025-8291, bsc#1251305). - gh-139400: xml.parsers.expat: Make sure that parent Expat parsers are only garbage-collected once they are no longer referenced by subparsers created by