Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:6007 - Security Advisory
Issued:
2026-03-30
Updated:
2026-03-30

RHSA-2026:6007 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: python security update

Type/Severity

Security Advisory: Moderate

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for python is now available for Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.

Security Fix(es):

  • cpython: IMAP command injection in user-controlled commands (CVE-2025-15366)
  • cpython: POP3 command injection in user-controlled commands (CVE-2025-15367)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6 x86_64
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6 i386
  • Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension (for IBM z Systems) 6 s390x

Fixes

  • BZ - 2431368 - CVE-2025-15366 cpython: IMAP command injection in user-controlled commands
  • BZ - 2431373 - CVE-2025-15367 cpython: POP3 command injection in user-controlled commands

CVEs

  • CVE-2025-15366
  • CVE-2025-15367

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension 6

SRPM
python-2.6.6-70.el6_10.2.src.rpm SHA-256: 816a4560a2f79d343b31d41536889b41693351280f70b44307284a6ba9fc99ef
x86_64
python-2.6.6-70.el6_10.2.x86_64.rpm SHA-256: f9f28f5fcc335fa8d02c4c342230fca4fd75dfea045bf12c4aa67b9d9845b517
python-debuginfo-2.6.6-70.el6_10.2.i686.rpm SHA-256: 653160745696d6f5562b4bb634485711e33710a431de78d9cfcb72920276d9e7
python-debuginfo-2.6.6-70.el6_10.2.x86_64.rpm SHA-256: e0f2cd3b175a46b2947e7219b967ab1a4f8aa97a8ee7f119f63033f550b2312b
python-debuginfo-2.6.6-70.el6_10.2.x86_64.rpm SHA-256: e0f2cd3b175a46b2947e7219b967ab1a4f8aa97a8ee7f119f63033f550b2312b
python-devel-2.6.6-70.el6_10.2.i686.rpm SHA-256: 96ac896efc466b2e5b3568f4cb0cf67060d93c611f260c3a4f5b96015c5750ac
python-devel-2.6.6-70.el6_10.2.x86_64.rpm SHA-256: 3c426de80bfcda80f39bcdad574ae3effd3d0fc915c11f9ef885f3d6a8540b97
python-libs-2.6.6-70.el6_10.2.i686.rpm SHA-256: 0e1c3b55fe1d2387f673105d21715ba112478cc7499a73bd573e66fdad37c50c
python-libs-2.6.6-70.el6_10.2.x86_64.rpm SHA-256: b773bcfa49aec57a7b2690092b9c5a5bb62c5001fc6373eba176c4f1bc2b1ce7
python-test-2.6.6-70.el6_10.2.x86_64.rpm SHA-256: cfe114efc40d2c4a68edc81c522229659360cbd7ae0e5637151c43a020557686
python-tools-2.6.6-70.el6_10.2.x86_64.rpm SHA-256: 9215bdf23e8d1c6314ef4b9fdfe3c23bb701e02abcdef27ee6ea20e5e4fca27f
tkinter-2.6.6-70.el6_10.2.x86_64.rpm SHA-256: 58df0a28cfcae86345f54d0f813bfd5f4d9566522bc0f08430247cb9adf00fc0
i386
python-2.6.6-70.el6_10.2.i686.rpm SHA-256: 89c89bdd237e0322b27adaf09f40a36ed8f0bdfeeb05ca543db47a3d9ff8a39a
python-debuginfo-2.6.6-70.el6_10.2.i686.rpm SHA-256: 653160745696d6f5562b4bb634485711e33710a431de78d9cfcb72920276d9e7
python-debuginfo-2.6.6-70.el6_10.2.i686.rpm SHA-256: 653160745696d6f5562b4bb634485711e33710a431de78d9cfcb72920276d9e7
python-devel-2.6.6-70.el6_10.2.i686.rpm SHA-256: 96ac896efc466b2e5b3568f4cb0cf67060d93c611f260c3a4f5b96015c5750ac
python-libs-2.6.6-70.el6_10.2.i686.rpm SHA-256: 0e1c3b55fe1d2387f673105d21715ba112478cc7499a73bd573e66fdad37c50c
python-test-2.6.6-70.el6_10.2.i686.rpm SHA-256: e46b6d37b17b12daa7f02fdff062e403502f8e2461c6404640ae58c07d2bfdbd
python-tools-2.6.6-70.el6_10.2.i686.rpm SHA-256: dd744771669181cf56c47839764e5eece04ae481f9fe9e841eaa202ce1b68a2c
tkinter-2.6.6-70.el6_10.2.i686.rpm SHA-256: 6e84b9b8c5f3753384dd015350a1512449a44a6a646aba5ad88300ff39d3f915

Red Hat Enterprise Linux Server - Extended Life Cycle Support Extension (for IBM z Systems) 6

SRPM
python-2.6.6-70.el6_10.2.src.rpm SHA-256: 816a4560a2f79d343b31d41536889b41693351280f70b44307284a6ba9fc99ef
s390x
python-2.6.6-70.el6_10.2.s390x.rpm SHA-256: 208272f000d445d98205b0dfcfb8036fe3e33bc9a7faaf185490b891b8bbc29f
python-debuginfo-2.6.6-70.el6_10.2.s390.rpm SHA-256: 37cc3892ce9a2d7140d473400962253bdfc6d4f04af4a53ab3a3453bbbd5e4b9
python-debuginfo-2.6.6-70.el6_10.2.s390x.rpm SHA-256: cc3ea2c2453554e275e2207e8ff93a02a28589eaf58fbdde2ec18c5fdda0a444
python-debuginfo-2.6.6-70.el6_10.2.s390x.rpm SHA-256: cc3ea2c2453554e275e2207e8ff93a02a28589eaf58fbdde2ec18c5fdda0a444
python-devel-2.6.6-70.el6_10.2.s390.rpm SHA-256: e7919239983b6b043cef997e4179168f32c800312023725ad558d801879c5e89
python-devel-2.6.6-70.el6_10.2.s390x.rpm SHA-256: 1b17257397c345c2cd276b26efc7037faff5cc8c360f7c413989d9aa62485e30
python-libs-2.6.6-70.el6_10.2.s390.rpm SHA-256: 54fc4fc3d7ed2bd86f67181acaf13f621bab8a46b1d27d4a0cc7d813b3898341
python-libs-2.6.6-70.el6_10.2.s390x.rpm SHA-256: a438f76abc5be9e74436f18d4b877469a63692f40569d928bb7f8a8f5cfedc26
python-test-2.6.6-70.el6_10.2.s390x.rpm SHA-256: a84360afb481cfc5079164c764936ac49226098fd147d1965367bcfeb21c57e3
python-tools-2.6.6-70.el6_10.2.s390x.rpm SHA-256: d13be1d2dcaabcd06bcb931a5cda4d5b7ee3304814462c8d3ce0b87fc88a2d47
tkinter-2.6.6-70.el6_10.2.s390x.rpm SHA-256: 757cd91b0350e01169c9fde63f274534ca0314678990647b85d034ee0cc133cb

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility