Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:71659 - Security Advisory
Issued:
2026-09-24
Updated:
2026-09-24

RHSA-2026:71659 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: python-cryptography security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for python-cryptography is now available for Red Hat Enterprise Linux 10.0 Extended Update Support.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems.

Security Fix(es):

  • python-cryptography: python-cryptography: Duplicate self-signed intermediates can cause exponential path-building (CVE-2026-69249)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.0 x86_64
  • Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.0 s390x
  • Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.0 ppc64le
  • Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.0 aarch64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.0 s390x
  • Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.0 x86_64

Fixes

  • BZ - 2510815 - CVE-2026-69249 python-cryptography: python-cryptography: Duplicate self-signed intermediates can cause exponential path-building

CVEs

  • CVE-2026-69249

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 - Extended Update Support 10.0

SRPM
python-cryptography-43.0.0-4.el10_0.1.src.rpm SHA-256: 48753e622986940a36a829f605757654c3feeada565042e58139b4088f30bec1
x86_64
python-cryptography-debugsource-43.0.0-4.el10_0.1.x86_64.rpm SHA-256: e6fb482416d3fa65b089c036692e48f113f368eaba542734c0c44c6d08ad55e7
python3-cryptography-43.0.0-4.el10_0.1.x86_64.rpm SHA-256: 4c11cec2f7abd1c7bbefd127e6fd290dc18e3f2a4832f5bf56232dd72293f98b
python3-cryptography-debuginfo-43.0.0-4.el10_0.1.x86_64.rpm SHA-256: 9b63bb43f00d7f338960ca225b9e8fc130b2cfb70fa35d1ceae0745823e4261d

Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 10.0

SRPM
python-cryptography-43.0.0-4.el10_0.1.src.rpm SHA-256: 48753e622986940a36a829f605757654c3feeada565042e58139b4088f30bec1
s390x
python-cryptography-debugsource-43.0.0-4.el10_0.1.s390x.rpm SHA-256: ea9eeb903bf5bcc63dc759d419b3b8e3b6f7e67e6b464e405da973e1f25d9a40
python3-cryptography-43.0.0-4.el10_0.1.s390x.rpm SHA-256: f3b30553d8445056521caaef164c3cd3d6f34c65173a947f12ce06e58a49aa98
python3-cryptography-debuginfo-43.0.0-4.el10_0.1.s390x.rpm SHA-256: 1612ecd49d874da40aaf3e40d2a493ab5b769f5849d6a51d30693053ab41a15e

Red Hat Enterprise Linux for Power, little endian - Extended Update Support 10.0

SRPM
python-cryptography-43.0.0-4.el10_0.1.src.rpm SHA-256: 48753e622986940a36a829f605757654c3feeada565042e58139b4088f30bec1
ppc64le
python-cryptography-debugsource-43.0.0-4.el10_0.1.ppc64le.rpm SHA-256: 36cf49a041c18a5b2ad0e2bae3bb0687f5577757a2fe43b233bde863f120b1ae
python3-cryptography-43.0.0-4.el10_0.1.ppc64le.rpm SHA-256: 2cd59d56cf7cb0bb163a77e27ddb8f63431660bb22d5ea279ee110252fab39f2
python3-cryptography-debuginfo-43.0.0-4.el10_0.1.ppc64le.rpm SHA-256: e2636c9876e3804486ec1d0bf470e7db53f83ddd3c7531cebf8e6f3812695069

Red Hat Enterprise Linux for ARM 64 - Extended Update Support 10.0

SRPM
python-cryptography-43.0.0-4.el10_0.1.src.rpm SHA-256: 48753e622986940a36a829f605757654c3feeada565042e58139b4088f30bec1
aarch64
python-cryptography-debugsource-43.0.0-4.el10_0.1.aarch64.rpm SHA-256: 51738aae6f30cf6b42e78ed32237ee7606d53fd9563815d333b45130169db273
python3-cryptography-43.0.0-4.el10_0.1.aarch64.rpm SHA-256: be17c81a016a0db9e5cd76f3110a34e1890e9c46fe4c002ea98242a623e6008c
python3-cryptography-debuginfo-43.0.0-4.el10_0.1.aarch64.rpm SHA-256: 6c4fc11fc298da8556e36cc131bf660ce116d04a79fc962ae3cb22adbfe2e537

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 10.0

SRPM
python-cryptography-43.0.0-4.el10_0.1.src.rpm SHA-256: 48753e622986940a36a829f605757654c3feeada565042e58139b4088f30bec1
aarch64
python-cryptography-debugsource-43.0.0-4.el10_0.1.aarch64.rpm SHA-256: 51738aae6f30cf6b42e78ed32237ee7606d53fd9563815d333b45130169db273
python3-cryptography-43.0.0-4.el10_0.1.aarch64.rpm SHA-256: be17c81a016a0db9e5cd76f3110a34e1890e9c46fe4c002ea98242a623e6008c
python3-cryptography-debuginfo-43.0.0-4.el10_0.1.aarch64.rpm SHA-256: 6c4fc11fc298da8556e36cc131bf660ce116d04a79fc962ae3cb22adbfe2e537

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 10.0

SRPM
python-cryptography-43.0.0-4.el10_0.1.src.rpm SHA-256: 48753e622986940a36a829f605757654c3feeada565042e58139b4088f30bec1
s390x
python-cryptography-debugsource-43.0.0-4.el10_0.1.s390x.rpm SHA-256: ea9eeb903bf5bcc63dc759d419b3b8e3b6f7e67e6b464e405da973e1f25d9a40
python3-cryptography-43.0.0-4.el10_0.1.s390x.rpm SHA-256: f3b30553d8445056521caaef164c3cd3d6f34c65173a947f12ce06e58a49aa98
python3-cryptography-debuginfo-43.0.0-4.el10_0.1.s390x.rpm SHA-256: 1612ecd49d874da40aaf3e40d2a493ab5b769f5849d6a51d30693053ab41a15e

Red Hat Enterprise Linux for Power, little endian - 4 years of support 10.0

SRPM
python-cryptography-43.0.0-4.el10_0.1.src.rpm SHA-256: 48753e622986940a36a829f605757654c3feeada565042e58139b4088f30bec1
ppc64le
python-cryptography-debugsource-43.0.0-4.el10_0.1.ppc64le.rpm SHA-256: 36cf49a041c18a5b2ad0e2bae3bb0687f5577757a2fe43b233bde863f120b1ae
python3-cryptography-43.0.0-4.el10_0.1.ppc64le.rpm SHA-256: 2cd59d56cf7cb0bb163a77e27ddb8f63431660bb22d5ea279ee110252fab39f2
python3-cryptography-debuginfo-43.0.0-4.el10_0.1.ppc64le.rpm SHA-256: e2636c9876e3804486ec1d0bf470e7db53f83ddd3c7531cebf8e6f3812695069

Red Hat Enterprise Linux for x86_64 - 4 years of updates 10.0

SRPM
python-cryptography-43.0.0-4.el10_0.1.src.rpm SHA-256: 48753e622986940a36a829f605757654c3feeada565042e58139b4088f30bec1
x86_64
python-cryptography-debugsource-43.0.0-4.el10_0.1.x86_64.rpm SHA-256: e6fb482416d3fa65b089c036692e48f113f368eaba542734c0c44c6d08ad55e7
python3-cryptography-43.0.0-4.el10_0.1.x86_64.rpm SHA-256: 4c11cec2f7abd1c7bbefd127e6fd290dc18e3f2a4832f5bf56232dd72293f98b
python3-cryptography-debuginfo-43.0.0-4.el10_0.1.x86_64.rpm SHA-256: 9b63bb43f00d7f338960ca225b9e8fc130b2cfb70fa35d1ceae0745823e4261d

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility