Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:1922 - Security Advisory
Issued:
2026-02-04
Updated:
2026-02-04

RHSA-2026:1922 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: python3.11 security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for python3.11 is now available for Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.

Security Fix(es):

  • cpython: Excessive read buffering DoS in http.client (CVE-2025-13836)
  • cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service (CVE-2025-12084)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - AUS 9.2 x86_64
  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x
  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2 x86_64
  • Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2 aarch64
  • Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2 ppc64le
  • Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2 s390x

Fixes

  • BZ - 2418078 - CVE-2025-13836 cpython: Excessive read buffering DoS in http.client
  • BZ - 2418655 - CVE-2025-12084 cpython: python: cpython: Quadratic algorithm in xml.dom.minidom leads to denial of service

CVEs

  • CVE-2025-12084
  • CVE-2025-13836

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - AUS 9.2

SRPM
python3.11-3.11.2-2.el9_2.9.src.rpm SHA-256: 5690623ad3013e26ddd309b53d294260e44a79a437670387208c1bf2444d472c
x86_64
python3.11-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 57e14a6f68da46efc975cf1b62165daa21f74bcffa8c80b2e9ea1a7b9b87447c
python3.11-debuginfo-3.11.2-2.el9_2.9.i686.rpm SHA-256: 4f6fa1f7df26ab3ee90f2feb3c0b482c86a62f2229906856d7737a0e81452f17
python3.11-debuginfo-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 72330fea6c24eefd5107b471abf1ff814f56bcb01568163fe596ecea3010bb69
python3.11-debugsource-3.11.2-2.el9_2.9.i686.rpm SHA-256: 42d9272d0788d41bcc1e379a95687e5ca8bfb001d2e6fb44582cad4b016c2713
python3.11-debugsource-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 6ef8112ae59ff343b7b2d3e46215d3a083903f6aef1e910f70370433215eece6
python3.11-devel-3.11.2-2.el9_2.9.i686.rpm SHA-256: a1f6bda47228a7553a73b15bc11525cb494e7ce9fcd814fb38eec67225c30fc1
python3.11-devel-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 8aa23fe0cca1a72ad2283331e85157e310f1f1384beb8900f11ba534adf1d24c
python3.11-libs-3.11.2-2.el9_2.9.i686.rpm SHA-256: 212b0947911751c9c04535bb2d43e2083bb60fcc1733e12567b712e411037462
python3.11-libs-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 2c0b5fcbe4d8911e38b285c0a221e9ff94604ad69e71c2915a20efe348a5cb78
python3.11-tkinter-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 400796bf11a743a7828593ae7da03e0bf921e557b87af0ce8fee3664d2afb73a

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2

SRPM
python3.11-3.11.2-2.el9_2.9.src.rpm SHA-256: 5690623ad3013e26ddd309b53d294260e44a79a437670387208c1bf2444d472c
ppc64le
python3.11-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: a362ad55dfbb20f6f92940b334e56f33e8f6ed9098044988dd304881cf5f7516
python3.11-debuginfo-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: f93947d99f13c6b941181147878c9d59f19d484b86589cb34adffd9bc6f7dc5a
python3.11-debugsource-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: 76f31c1788ae091299a6102e953ff5741e7bcdf336514a119ca671909c6bac8a
python3.11-devel-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: 249453b7d8874e5fd59100dfd0d551c9b4ed37fee97cf1d51aecbd8f181a24e8
python3.11-libs-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: 281a37193349c51183711f01b47274c4dc5421a3e89bfbe4ea85cc1b0e08dd40
python3.11-tkinter-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: cafd9a59693a23faa5a8853cbbffecfd7b3f272eeaa955d135697aea5e2c78a4

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.2

SRPM
python3.11-3.11.2-2.el9_2.9.src.rpm SHA-256: 5690623ad3013e26ddd309b53d294260e44a79a437670387208c1bf2444d472c
x86_64
python3.11-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 57e14a6f68da46efc975cf1b62165daa21f74bcffa8c80b2e9ea1a7b9b87447c
python3.11-debuginfo-3.11.2-2.el9_2.9.i686.rpm SHA-256: 4f6fa1f7df26ab3ee90f2feb3c0b482c86a62f2229906856d7737a0e81452f17
python3.11-debuginfo-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 72330fea6c24eefd5107b471abf1ff814f56bcb01568163fe596ecea3010bb69
python3.11-debugsource-3.11.2-2.el9_2.9.i686.rpm SHA-256: 42d9272d0788d41bcc1e379a95687e5ca8bfb001d2e6fb44582cad4b016c2713
python3.11-debugsource-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 6ef8112ae59ff343b7b2d3e46215d3a083903f6aef1e910f70370433215eece6
python3.11-devel-3.11.2-2.el9_2.9.i686.rpm SHA-256: a1f6bda47228a7553a73b15bc11525cb494e7ce9fcd814fb38eec67225c30fc1
python3.11-devel-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 8aa23fe0cca1a72ad2283331e85157e310f1f1384beb8900f11ba534adf1d24c
python3.11-libs-3.11.2-2.el9_2.9.i686.rpm SHA-256: 212b0947911751c9c04535bb2d43e2083bb60fcc1733e12567b712e411037462
python3.11-libs-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 2c0b5fcbe4d8911e38b285c0a221e9ff94604ad69e71c2915a20efe348a5cb78
python3.11-tkinter-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 400796bf11a743a7828593ae7da03e0bf921e557b87af0ce8fee3664d2afb73a

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2

SRPM
python3.11-3.11.2-2.el9_2.9.src.rpm SHA-256: 5690623ad3013e26ddd309b53d294260e44a79a437670387208c1bf2444d472c
aarch64
python3.11-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: 4c8d5c1433cfbea4b865002eac489340269be48bb23246f8336c41126e0a4b77
python3.11-debuginfo-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: a3201d37fc8c15008da5dd77924a0a88802d2a328ea588a36ae49585a5091e34
python3.11-debugsource-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: 9a2ee966d7ce4b06d7478b0fcdd43093cf16608c66675acfcbb6f0c12b0b0d04
python3.11-devel-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: 9a0d10ad0ae2b62ba08a1a410529a3b70792871f48b12f4082f6cae7853d12b6
python3.11-libs-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: fb456263b9e5b0e89d769d9a08051bfb308a22e6e41a9cf6627cfaac372f85d4
python3.11-tkinter-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: 20f2c05b2b460c2a0f19b5789d22df44bbc75eae713b16aa0db240fc0759dc55

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2

SRPM
python3.11-3.11.2-2.el9_2.9.src.rpm SHA-256: 5690623ad3013e26ddd309b53d294260e44a79a437670387208c1bf2444d472c
s390x
python3.11-3.11.2-2.el9_2.9.s390x.rpm SHA-256: ca95dbc5886748604fc2429a5a3e29bab101bc6ca853cc1b8bfab2f8df7161fd
python3.11-debuginfo-3.11.2-2.el9_2.9.s390x.rpm SHA-256: 6a974bcdc6ef6189bfe9545920a23d3c5f7ade9b975914ceca38f78ffcfd6bc8
python3.11-debugsource-3.11.2-2.el9_2.9.s390x.rpm SHA-256: 69ba5bef1e6f9c50c80f6c9a2ab179e97e3f4fb0fac9d2506541ba50c3beac7b
python3.11-devel-3.11.2-2.el9_2.9.s390x.rpm SHA-256: 126974db3cae68add6d2ea0d7a683193699c7599636c686189e52e70013509a8
python3.11-libs-3.11.2-2.el9_2.9.s390x.rpm SHA-256: e819de8265c073861e356ea2445c1922a359876b7c5ff1a82ff32f7c9221932f
python3.11-tkinter-3.11.2-2.el9_2.9.s390x.rpm SHA-256: 44d9b35f86e4925101b188da2e5540e15d157c33c142e2a4b78e801774c50067

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.2

SRPM
python3.11-3.11.2-2.el9_2.9.src.rpm SHA-256: 5690623ad3013e26ddd309b53d294260e44a79a437670387208c1bf2444d472c
x86_64
python3.11-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 57e14a6f68da46efc975cf1b62165daa21f74bcffa8c80b2e9ea1a7b9b87447c
python3.11-debuginfo-3.11.2-2.el9_2.9.i686.rpm SHA-256: 4f6fa1f7df26ab3ee90f2feb3c0b482c86a62f2229906856d7737a0e81452f17
python3.11-debuginfo-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 72330fea6c24eefd5107b471abf1ff814f56bcb01568163fe596ecea3010bb69
python3.11-debugsource-3.11.2-2.el9_2.9.i686.rpm SHA-256: 42d9272d0788d41bcc1e379a95687e5ca8bfb001d2e6fb44582cad4b016c2713
python3.11-debugsource-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 6ef8112ae59ff343b7b2d3e46215d3a083903f6aef1e910f70370433215eece6
python3.11-devel-3.11.2-2.el9_2.9.i686.rpm SHA-256: a1f6bda47228a7553a73b15bc11525cb494e7ce9fcd814fb38eec67225c30fc1
python3.11-devel-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 8aa23fe0cca1a72ad2283331e85157e310f1f1384beb8900f11ba534adf1d24c
python3.11-libs-3.11.2-2.el9_2.9.i686.rpm SHA-256: 212b0947911751c9c04535bb2d43e2083bb60fcc1733e12567b712e411037462
python3.11-libs-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 2c0b5fcbe4d8911e38b285c0a221e9ff94604ad69e71c2915a20efe348a5cb78
python3.11-tkinter-3.11.2-2.el9_2.9.x86_64.rpm SHA-256: 400796bf11a743a7828593ae7da03e0bf921e557b87af0ce8fee3664d2afb73a

Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.2

SRPM
python3.11-3.11.2-2.el9_2.9.src.rpm SHA-256: 5690623ad3013e26ddd309b53d294260e44a79a437670387208c1bf2444d472c
aarch64
python3.11-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: 4c8d5c1433cfbea4b865002eac489340269be48bb23246f8336c41126e0a4b77
python3.11-debuginfo-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: a3201d37fc8c15008da5dd77924a0a88802d2a328ea588a36ae49585a5091e34
python3.11-debugsource-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: 9a2ee966d7ce4b06d7478b0fcdd43093cf16608c66675acfcbb6f0c12b0b0d04
python3.11-devel-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: 9a0d10ad0ae2b62ba08a1a410529a3b70792871f48b12f4082f6cae7853d12b6
python3.11-libs-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: fb456263b9e5b0e89d769d9a08051bfb308a22e6e41a9cf6627cfaac372f85d4
python3.11-tkinter-3.11.2-2.el9_2.9.aarch64.rpm SHA-256: 20f2c05b2b460c2a0f19b5789d22df44bbc75eae713b16aa0db240fc0759dc55

Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.2

SRPM
python3.11-3.11.2-2.el9_2.9.src.rpm SHA-256: 5690623ad3013e26ddd309b53d294260e44a79a437670387208c1bf2444d472c
ppc64le
python3.11-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: a362ad55dfbb20f6f92940b334e56f33e8f6ed9098044988dd304881cf5f7516
python3.11-debuginfo-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: f93947d99f13c6b941181147878c9d59f19d484b86589cb34adffd9bc6f7dc5a
python3.11-debugsource-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: 76f31c1788ae091299a6102e953ff5741e7bcdf336514a119ca671909c6bac8a
python3.11-devel-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: 249453b7d8874e5fd59100dfd0d551c9b4ed37fee97cf1d51aecbd8f181a24e8
python3.11-libs-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: 281a37193349c51183711f01b47274c4dc5421a3e89bfbe4ea85cc1b0e08dd40
python3.11-tkinter-3.11.2-2.el9_2.9.ppc64le.rpm SHA-256: cafd9a59693a23faa5a8853cbbffecfd7b3f272eeaa955d135697aea5e2c78a4

Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.2

SRPM
python3.11-3.11.2-2.el9_2.9.src.rpm SHA-256: 5690623ad3013e26ddd309b53d294260e44a79a437670387208c1bf2444d472c
s390x
python3.11-3.11.2-2.el9_2.9.s390x.rpm SHA-256: ca95dbc5886748604fc2429a5a3e29bab101bc6ca853cc1b8bfab2f8df7161fd
python3.11-debuginfo-3.11.2-2.el9_2.9.s390x.rpm SHA-256: 6a974bcdc6ef6189bfe9545920a23d3c5f7ade9b975914ceca38f78ffcfd6bc8
python3.11-debugsource-3.11.2-2.el9_2.9.s390x.rpm SHA-256: 69ba5bef1e6f9c50c80f6c9a2ab179e97e3f4fb0fac9d2506541ba50c3beac7b
python3.11-devel-3.11.2-2.el9_2.9.s390x.rpm SHA-256: 126974db3cae68add6d2ea0d7a683193699c7599636c686189e52e70013509a8
python3.11-libs-3.11.2-2.el9_2.9.s390x.rpm SHA-256: e819de8265c073861e356ea2445c1922a359876b7c5ff1a82ff32f7c9221932f
python3.11-tkinter-3.11.2-2.el9_2.9.s390x.rpm SHA-256: 44d9b35f86e4925101b188da2e5540e15d157c33c142e2a4b78e801774c50067

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility