Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:1537 - Security Advisory
Issued:
2026-01-29
Updated:
2026-01-29

RHSA-2026:1537 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: python security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for python is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.

Security Fix(es):

  • cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service (CVE-2025-12084)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le

Fixes

  • BZ - 2418655 - CVE-2025-12084 cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service

CVEs

  • CVE-2025-12084

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - Extended Life Cycle Support 7

SRPM
python-2.7.5-94.el7_9.2.src.rpm SHA-256: 7a59e29553e514d668a7d97d93136a3c49cc80cab618dea23757dab760951c3b
x86_64
python-2.7.5-94.el7_9.2.x86_64.rpm SHA-256: f82fe5a5d01aa9ee4bb4f2039711c4eb4307420c0d9d30c47bfe1041484d8e40
python-debug-2.7.5-94.el7_9.2.x86_64.rpm SHA-256: ad88f1da4a745dc5f9a210262b2c38f64a507476ca85e00cda5c2611695f802c
python-debuginfo-2.7.5-94.el7_9.2.i686.rpm SHA-256: 6f8e72ecff64bb541a6cb943edc5191277cd35902098c3af66da9a9c2550257f
python-debuginfo-2.7.5-94.el7_9.2.x86_64.rpm SHA-256: ce69fa1134b9a3b1cc7e7e4bf3db33eea754fa32c49eccc1b8a426792dda0b6b
python-debuginfo-2.7.5-94.el7_9.2.x86_64.rpm SHA-256: ce69fa1134b9a3b1cc7e7e4bf3db33eea754fa32c49eccc1b8a426792dda0b6b
python-devel-2.7.5-94.el7_9.2.x86_64.rpm SHA-256: 245d88695f4c3ad308d1f680c4dcf376969469a1f120e2b60bdf04e2bb9bcc11
python-libs-2.7.5-94.el7_9.2.i686.rpm SHA-256: 73321b7b72fc67fdeb883f2773fd12add67d40e3c10695335ae2296785735279
python-libs-2.7.5-94.el7_9.2.x86_64.rpm SHA-256: 4eb983beb6f487ba1bd91349e333f116632c381aad6573bee26db7413200c4bd
python-test-2.7.5-94.el7_9.2.x86_64.rpm SHA-256: 380f419d743d9cdac52b3cb639458e0acb2880c2be22f3de0e9cb67173f89b6e
python-tools-2.7.5-94.el7_9.2.x86_64.rpm SHA-256: 660e3da293c43b3dae5fa6d481bd6556cd49176d5c8967e70cef3a0563421b6e
tkinter-2.7.5-94.el7_9.2.x86_64.rpm SHA-256: 47948f6634a743b883bcd242457c8a62c10ad85b7474627b80982386c73d1e8c

Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7

SRPM
python-2.7.5-94.el7_9.2.src.rpm SHA-256: 7a59e29553e514d668a7d97d93136a3c49cc80cab618dea23757dab760951c3b
s390x
python-2.7.5-94.el7_9.2.s390x.rpm SHA-256: 23d40bad5cfdf10d95a5b41c484f8651afca08cef266c64a9718521f5b69ee32
python-debug-2.7.5-94.el7_9.2.s390x.rpm SHA-256: 000ef0c8897634e0f6b647ec9ef10dd64e58cc57fe7b89d68f9f4cb1f9951051
python-debuginfo-2.7.5-94.el7_9.2.s390.rpm SHA-256: e33b97f0c80a4f0baa1b6bd9b3c5ba6a53bcb34ec2eb8dfb71f525e56d474240
python-debuginfo-2.7.5-94.el7_9.2.s390x.rpm SHA-256: 9e59e3cadd2c1228e5e6baf74f156ba09986abcbe7f2e686261f789edba08343
python-debuginfo-2.7.5-94.el7_9.2.s390x.rpm SHA-256: 9e59e3cadd2c1228e5e6baf74f156ba09986abcbe7f2e686261f789edba08343
python-devel-2.7.5-94.el7_9.2.s390x.rpm SHA-256: b35096349620647e026c9cf656379fd4985266316569e9831583827ad7ca5330
python-libs-2.7.5-94.el7_9.2.s390.rpm SHA-256: f14df5bccc9484d7e4c9c9681f357b546e262f2abf428c09789b4547e49dfab8
python-libs-2.7.5-94.el7_9.2.s390x.rpm SHA-256: 9dd02f4078b5055a900bd92b0b24aaa17d660ee89ef0cbe36106f8b899c64baf
python-test-2.7.5-94.el7_9.2.s390x.rpm SHA-256: 4174dbe08afd53b73cb8672096f4e20e15e7815e69c8e1e8989a10c0f3b647c6
python-tools-2.7.5-94.el7_9.2.s390x.rpm SHA-256: f9b66cdeb02882d341a62312ac8e37344cea48cd38810927345b7141cd00e820
tkinter-2.7.5-94.el7_9.2.s390x.rpm SHA-256: 78e50a3f9fb01968a58aa382523000064dafe8ad7a7e25881068f25e271f7833

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7

SRPM
python-2.7.5-94.el7_9.2.src.rpm SHA-256: 7a59e29553e514d668a7d97d93136a3c49cc80cab618dea23757dab760951c3b
ppc64
python-2.7.5-94.el7_9.2.ppc64.rpm SHA-256: 64a83c7fa3e766a757b72c7354d4741cc2e46d7689662a082a9509b899443d80
python-debug-2.7.5-94.el7_9.2.ppc64.rpm SHA-256: 5f09d645cce9050f8832cef08920979275268526f0c7c9b3076a63ff57711575
python-debuginfo-2.7.5-94.el7_9.2.ppc.rpm SHA-256: bd29cf54041239cee8c7154ff8c35982098f8820f9b248fce92248a1630d6b4f
python-debuginfo-2.7.5-94.el7_9.2.ppc64.rpm SHA-256: 492f7f3ad8db91b342abbe12c43889779fc20b83f53601acc27097f161ad57db
python-debuginfo-2.7.5-94.el7_9.2.ppc64.rpm SHA-256: 492f7f3ad8db91b342abbe12c43889779fc20b83f53601acc27097f161ad57db
python-devel-2.7.5-94.el7_9.2.ppc64.rpm SHA-256: 6126b04c24513dec21bd2f333f8f3820c22ad7cb67fef4f72bc8cbe8fd7fa251
python-libs-2.7.5-94.el7_9.2.ppc.rpm SHA-256: 6435303389cbc885e0b1d7deaf095d6cb3b161cc9542413dd454a6e7c72e40f6
python-libs-2.7.5-94.el7_9.2.ppc64.rpm SHA-256: 992f562163065e1a8155c91208568ceb0ea04de45d8ef04916fc109fb2f0e2c4
python-test-2.7.5-94.el7_9.2.ppc64.rpm SHA-256: 4e439b7f73ff8993143bc3271196e67ceaf90449ca163f7c63ba3bce51216255
python-tools-2.7.5-94.el7_9.2.ppc64.rpm SHA-256: 04a5b06daef71aaad6142f01afff5e4f73901449180a5f395c7abe968945b4ad
tkinter-2.7.5-94.el7_9.2.ppc64.rpm SHA-256: 444fc1192127359ba14535e03dff87c81b67401b45479e36dabaaf842682d47c

Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7

SRPM
python-2.7.5-94.el7_9.2.src.rpm SHA-256: 7a59e29553e514d668a7d97d93136a3c49cc80cab618dea23757dab760951c3b
ppc64le
python-2.7.5-94.el7_9.2.ppc64le.rpm SHA-256: 0a341cd7b48d449e7ceb349c878f4b3d51b655d8cb79eb9a735bae9b17048d19
python-debug-2.7.5-94.el7_9.2.ppc64le.rpm SHA-256: c7244b148413a1b1bd5e651bf563e64b6cba600f540e54ae516e1175482de47f
python-debuginfo-2.7.5-94.el7_9.2.ppc64le.rpm SHA-256: 012d7c6d4ee6be3bc0c237fe0cb11af9ea2f3892315a37c1adb5c3b14536a4f1
python-debuginfo-2.7.5-94.el7_9.2.ppc64le.rpm SHA-256: 012d7c6d4ee6be3bc0c237fe0cb11af9ea2f3892315a37c1adb5c3b14536a4f1
python-devel-2.7.5-94.el7_9.2.ppc64le.rpm SHA-256: 95dc8bf9c78b2e72360939001153fdd2eddbff72a15fb2d69ad59654893e3063
python-libs-2.7.5-94.el7_9.2.ppc64le.rpm SHA-256: bf2e9a49c732e392c9e2782f617f06f150976fc4a68c9a741cd1d9e52c72a979
python-test-2.7.5-94.el7_9.2.ppc64le.rpm SHA-256: d7de851a8e06e0f29f9465930601c73cf3a9a3e3ec3561e6a838ea6f15c768b7
python-tools-2.7.5-94.el7_9.2.ppc64le.rpm SHA-256: 67a40958219eab3542e4b3a7410e05cfe88a00b80a5880ccfa394dc5660f1a26
tkinter-2.7.5-94.el7_9.2.ppc64le.rpm SHA-256: 18191bfc73fdc3b159df3fb8210f3ed990f04fa5ce09fdf7e19c2fbbc2bcd3b8

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility