Allows the extraction filter to be ignored, allowing symlink targets to point outside the destination directory, and the modification of some file metadata. You are affected by this vulnerability if using the tarfile module to extract untrusted tar archives using TarFile.extractall() or TarFile.extract() using the filter= parameter with a value of "data" or "tar". See the tarfile extraction filters documentation https://docs.python.org/3/library/tarfile.html#tarfile-extraction-filter for more information. Note that for Python 3.14 or later the default value of filter= changed from "no filtering" to `"data", so if you are relying on this new default behavior then your usage is also affected. Note that none of these vulnerabilities significantly affect the installation of source distributions which are tar archives as source distributions already allow arbitrary code execution during the build process. However when evaluating source distributions it's important to avoid installing source distributions with suspicious links.
Conclusion & alert: CVE-2025-4138 is rated Moderate Risk (47.9/100): CVSS High severity, with medium exploitation likelihood (EPSS 0.27%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-03-30 | 0.05% | 0.27% | +0.22% |
| 2 | 2026-02-18 | 0.19% | 0.05% | -0.14% |
| 3 | 2026-02-17 | — | 0.19% | — |
Full EPSS history (6 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.5 | 3.1 | HIGH |
|
3.9 | 3.6 | [email protected] |
| vendor | priority | summary | link |
|---|---|---|---|
alpine
|
high | CVE-2025-4138: 2 source package rows (python3, python3-tkinter); 9 state rows across 8 repos (3.19-main, 3.20-main, 3.21-community, 3.21-main, 3.22-community, 3.22-main, edge-community, edge-main); fixed 9, open 0. | https://security.alpinelinux.org/vuln/CVE-2025-4138 |
debian
|
unimportant | CVE-2025-4138 unimportant priority: Debian including 6 source packages (jython, pypy3, python2.7, python3.11, python3.13, python3.9), 16 status rows across 5 suites (bookworm, bullseye, forky, sid, trixie): resolved 14, open 2. | https://security-tracker.debian.org/tracker/CVE-2025-4138 |
gentoo
|
high | CVE-2025-4138: 1 GLSA(s) (202506-07), 2 atom(s) (dev-lang/pypy, dev-lang/python); latest impact high. | https://bugs.gentoo.org/buglist.cgi?quicksearch=CVE-2025-4138 |
redhat
|
high | — | https://access.redhat.com/security/cve/CVE-2025-4138 |
suse
|
high | CVE-2025-4138 severity important: SUSE including 356 source package names (0.0.17-1.1:libpython3_11-1_0-3.11.13-150600.3.30.1, 0.0.17-1.1:libpython3_6m1_0-3.6.15-150300.10.97.1, …), 2151 product×package rows across 359 product lines (Container bci/kiwi, Container bci/spack, … (359 product lines)): Fixed 2061, Known Not Affected 90. | https://www.suse.com/security/cve/CVE-2025-4138/ |
ubuntu
|
medium | CVE-2025-4138 medium priority: Ubuntu including 12 source packages (python2.7, python3.10, …), 84 status rows across 10 suites (bionic, focal, jammy, noble, oracular, plucky, questing, trusty, upstream, xenial): DNE 51, not-affected 16, needs-triage 10, released 7. | https://ubuntu.com/security/CVE-2025-4138 |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| No affected products in dataset. | |||