File _patchinfo of Package patchinfo
<patchinfo incident="19361"> <issue tracker="bnc" id="1258436">VUL-0: CVE-2025-14009: python-nltk: `_unzip_iter` function in `nltk/downloader.py` uses `zipfile.extractall()` without performing path validation or security checks</issue> <issue tracker="cve" id="2025-14009"/> <packager>dgarcia</packager> <rating>important</rating> <category>security</category> <summary>Security update for python-nltk</summary> <description>This update for python-nltk fixes the following issues: - CVE-2025-14009: Fixed Secure ZIP extraction (boo#1258436) </description> </patchinfo>