Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
红帽产品勘误 RHSA-2026:4216 - Security Advisory
发布:
2026-03-10
已更新:
2026-03-10

RHSA-2026:4216 - Security Advisory

  • 概述
  • 更新的软件包

概述

Moderate: python3.11 security update

类型/严重性

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

识别并修复受此公告影响的系统。

查看受影响的系统

标题

An update for python3.11 is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

描述

Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.

Security Fix(es):

  • cpython: IMAP command injection in user-controlled commands (CVE-2025-15366)
  • cpython: POP3 command injection in user-controlled commands (CVE-2025-15367)
  • cpython: email header injection due to unquoted newlines (CVE-2026-1299)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

解决方案

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

受影响的产品

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64
  • Red Hat CodeReady Linux Builder for x86_64 9 x86_64
  • Red Hat CodeReady Linux Builder for Power, little endian 9 ppc64le
  • Red Hat CodeReady Linux Builder for ARM 64 9 aarch64
  • Red Hat CodeReady Linux Builder for IBM z Systems 9 s390x

修复

  • BZ - 2431368 - CVE-2025-15366 cpython: IMAP command injection in user-controlled commands
  • BZ - 2431373 - CVE-2025-15367 cpython: POP3 command injection in user-controlled commands
  • BZ - 2432437 - CVE-2026-1299 cpython: email header injection due to unquoted newlines

CVE

  • CVE-2025-15366
  • CVE-2025-15367
  • CVE-2026-1299

参考

  • https://access.redhat.com/security/updates/classification/#moderate
注:: 可能有这些软件包的更新版本。 点击软件包名称查看详情。

Red Hat Enterprise Linux for x86_64 9

SRPM
python3.11-3.11.13-5.1.el9_7.src.rpm SHA-256: fa7657de11b86a100905b58601ca5596ba34e5b5b64b69e271c366d9749923b5
x86_64
python3.11-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: eb490f1bfc37ee9639e06641febd6d1a9035853a0e4037fe9272bd75f7675a2e
python3.11-debuginfo-3.11.13-5.1.el9_7.i686.rpm SHA-256: bf5997cf18775805b280c875ba7133d1fa7d652b343179fa2ce8e2b7b9f2bdd5
python3.11-debuginfo-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: 89ba57f07162df2db7da40cd54d9b30883bfcab487e7e9e4846d09c156f2719f
python3.11-debugsource-3.11.13-5.1.el9_7.i686.rpm SHA-256: 669a9834dc06c135329cf45984d2ee093e713a95bf343ccbae2703a5eb01c96b
python3.11-debugsource-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: d0b750de4b1f25076fa4aff29b6f35f2bdf7521949a96ef46b0749aa04d7e1ab
python3.11-devel-3.11.13-5.1.el9_7.i686.rpm SHA-256: 3baf48c5ddb815b61335d900f0915c111b71cdfb24edb49e5ba67b943df7f031
python3.11-devel-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: 3380adcb021c7e872c05e4b4884baef4ced6d3cf03bbe50e0147de970aa3a4c3
python3.11-libs-3.11.13-5.1.el9_7.i686.rpm SHA-256: 8e7f8269096981b10e8b58928a750e53204282f89ba593974d43d5f7fb8eaf0e
python3.11-libs-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: f2d5ac78c2553c34367933700053a7234584685a14940d81e19a9f9a6d724a37
python3.11-tkinter-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: 07b1c8ab50e946fcef4f23a947bffefbc50a4bdaf8ea9210757d4e39505a79dc

Red Hat Enterprise Linux for IBM z Systems 9

SRPM
python3.11-3.11.13-5.1.el9_7.src.rpm SHA-256: fa7657de11b86a100905b58601ca5596ba34e5b5b64b69e271c366d9749923b5
s390x
python3.11-3.11.13-5.1.el9_7.s390x.rpm SHA-256: b32130a18aaaa35a926c04d4f98c53c3f6f2b17b50702b1f52996b48e06f4760
python3.11-debuginfo-3.11.13-5.1.el9_7.s390x.rpm SHA-256: 65dd3b5a287c6d45d3a2aec3c7813667acbdd2bdf1bce526a5c1100b85dbcb0b
python3.11-debugsource-3.11.13-5.1.el9_7.s390x.rpm SHA-256: 13ce43dcfd15d3c8399cf764fcf866da760f74a0491d7bc9473fd137a3272a56
python3.11-devel-3.11.13-5.1.el9_7.s390x.rpm SHA-256: 7ab2c2e38df830c5a964b6fe459cc6d877ffeebe2911a646c0cf0d366a1caf11
python3.11-libs-3.11.13-5.1.el9_7.s390x.rpm SHA-256: 1345d7503f5ece1537e7f868061189f185d959dee4d27b14dfe6f28d4ba25497
python3.11-tkinter-3.11.13-5.1.el9_7.s390x.rpm SHA-256: af6cafa7c717b5e5db70d95b4f318234caad879d266a622d16c710f301ae1be7

Red Hat Enterprise Linux for Power, little endian 9

SRPM
python3.11-3.11.13-5.1.el9_7.src.rpm SHA-256: fa7657de11b86a100905b58601ca5596ba34e5b5b64b69e271c366d9749923b5
ppc64le
python3.11-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: 49c012944a20687bcbd39865ae2250d75e218ffb12d54565e7fdb7a106d1cbc3
python3.11-debuginfo-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: 7d402490c25d5851c0ab452d9df7d8ff7bb204da7ef3237ed3258dc346b83009
python3.11-debugsource-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: 5fc0ed8497148895ad63be53e658a4be25ad883a4c0294e708e282c364a0890d
python3.11-devel-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: 0f0819cd0296ecde14c0c218238a74600039dcf02d7d14f0335137a6b1d11d4e
python3.11-libs-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: f12d6fdf0fe8a2c302a4a7d743ecb229af176196b02a0c8c4dae0b0d6e6959f8
python3.11-tkinter-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: 48a007e3b775946937dc440263b5d52bc37c0bc8ffe067934a650eb9d1e67f31

Red Hat Enterprise Linux for ARM 64 9

SRPM
python3.11-3.11.13-5.1.el9_7.src.rpm SHA-256: fa7657de11b86a100905b58601ca5596ba34e5b5b64b69e271c366d9749923b5
aarch64
python3.11-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: 6586672a7379a4895c87f7c2aa9e8267f15c9e375358bbea14e3b31ddc901115
python3.11-debuginfo-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: 16d044fb2598028725f148b6e6ff1988cfae97aee15423f148f63e0d8fa53a33
python3.11-debugsource-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: d66b4d6770b3bb29fb65cec96830f8db93289e19623b40ea46c55413eef83e11
python3.11-devel-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: 12896e029a2913e7f4727925f69bedc0b37774f8df499c69bc5c13f058a0b883
python3.11-libs-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: 9ebbb40dd60a4f12d20d2a0f3f32a67880d4a6b2c48e06e0a14a7cfbd1452c8c
python3.11-tkinter-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: febff0c7e7bdc1ea0efe9bcad3e40b5b9c600519db42dedb386b9901e3a53276

Red Hat CodeReady Linux Builder for x86_64 9

SRPM
x86_64
python3.11-3.11.13-5.1.el9_7.i686.rpm SHA-256: f8d1f5ad9347b7d532111f73478a2e4eaa0d881ec340d7a72cf6c532c0eff64f
python3.11-debug-3.11.13-5.1.el9_7.i686.rpm SHA-256: eeca056f15b4971530d2928f2a3d72d102fc26567a394a5cc7956b771abaed91
python3.11-debug-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: 184fe993106c2e677bf21cd24c4a7f9706506b866ae4e1f718a8f9c1c6b99a07
python3.11-debuginfo-3.11.13-5.1.el9_7.i686.rpm SHA-256: bf5997cf18775805b280c875ba7133d1fa7d652b343179fa2ce8e2b7b9f2bdd5
python3.11-debuginfo-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: 89ba57f07162df2db7da40cd54d9b30883bfcab487e7e9e4846d09c156f2719f
python3.11-debugsource-3.11.13-5.1.el9_7.i686.rpm SHA-256: 669a9834dc06c135329cf45984d2ee093e713a95bf343ccbae2703a5eb01c96b
python3.11-debugsource-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: d0b750de4b1f25076fa4aff29b6f35f2bdf7521949a96ef46b0749aa04d7e1ab
python3.11-idle-3.11.13-5.1.el9_7.i686.rpm SHA-256: e8b15480f0579e188d11f77b581ce92db65d7928d873d828abf65aef1f470d6f
python3.11-idle-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: e750d5dc74cd90013d83c9bfcdadda1c828bc99f397db6f5389e1e519d562b4c
python3.11-test-3.11.13-5.1.el9_7.i686.rpm SHA-256: 2cb8319831750be152e7bac19fb37b4b6da0effd63d21cbf983734fc8407e2c5
python3.11-test-3.11.13-5.1.el9_7.x86_64.rpm SHA-256: 9f5b0c1b07bf8027a458c6b28f509ee0e7f3bab67a8c5fdd77865fc3cc622554
python3.11-tkinter-3.11.13-5.1.el9_7.i686.rpm SHA-256: 3c5b2fd4bf7ef389941a85d22a8682cd685ec77d9976750685358acacd486b65

Red Hat CodeReady Linux Builder for Power, little endian 9

SRPM
ppc64le
python3.11-debug-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: 69232035c7731e9d4e548d029f57f7a347ee2b793442dbfba40c16f170b11963
python3.11-debuginfo-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: 7d402490c25d5851c0ab452d9df7d8ff7bb204da7ef3237ed3258dc346b83009
python3.11-debugsource-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: 5fc0ed8497148895ad63be53e658a4be25ad883a4c0294e708e282c364a0890d
python3.11-idle-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: d3c1c87e828b5c882d978a5ce93bb0e655c5294f77115082f12022a9f7336b1b
python3.11-test-3.11.13-5.1.el9_7.ppc64le.rpm SHA-256: ea5ae4b8d81dac024354811006a9b0d87d5f6d4792ad711c2b76a0e108bae4d3

Red Hat CodeReady Linux Builder for ARM 64 9

SRPM
aarch64
python3.11-debug-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: 7309a03f12eef8482c4d788bff80177a30d915bfd832b374f99a8b4db4881c44
python3.11-debuginfo-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: 16d044fb2598028725f148b6e6ff1988cfae97aee15423f148f63e0d8fa53a33
python3.11-debugsource-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: d66b4d6770b3bb29fb65cec96830f8db93289e19623b40ea46c55413eef83e11
python3.11-idle-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: daddcc102fadc6e4a66d536e32f16cc57f4abb44c1bee5277b65b5c9607b371b
python3.11-test-3.11.13-5.1.el9_7.aarch64.rpm SHA-256: 4fb47f71182e6d3de2031f00175d7b667b227e0bb2377433160f6fa37ac0b3c3

Red Hat CodeReady Linux Builder for IBM z Systems 9

SRPM
s390x
python3.11-debug-3.11.13-5.1.el9_7.s390x.rpm SHA-256: 777a65df3f7d0f417a9c1a54547d821c7199f45dd03d3fa443b6dcdfe9e6b06a
python3.11-debuginfo-3.11.13-5.1.el9_7.s390x.rpm SHA-256: 65dd3b5a287c6d45d3a2aec3c7813667acbdd2bdf1bce526a5c1100b85dbcb0b
python3.11-debugsource-3.11.13-5.1.el9_7.s390x.rpm SHA-256: 13ce43dcfd15d3c8399cf764fcf866da760f74a0491d7bc9473fd137a3272a56
python3.11-idle-3.11.13-5.1.el9_7.s390x.rpm SHA-256: ab5123abfe760e1aa85bbe4563b77ea8d181890f04c27dce25046ef4c87cb980
python3.11-test-3.11.13-5.1.el9_7.s390x.rpm SHA-256: 56380bcdf737db3f0dbf4863c9dcc662d0988c5b457160f27824b68d068a9d56

Red Hat 安全团队联络方式为 secalert@redhat.com。 更多联络细节请参考 https://access.redhat.com/security/team/contact/。

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility