[CLSA-2026:1771930823] python2: Fix of CVE-2025-15367
Type:
security
Severity:
Important
Release date:
2026-02-24 11:00:28 UTC
Description:
- CVE-2025-15367: reject control characters in POP3 commands to prevent command injection via embedded newlines
Updated packages:
  • python2-2.7.18-17.module_el8+2352+bd84b602.tuxcare.els7.x86_64.rpm
    sha:e8ad02fe2eff633671b78a23d1036391d7843fec5df8939cc35931f2b589903f
  • python2-debug-2.7.18-17.module_el8+2352+bd84b602.tuxcare.els7.x86_64.rpm
    sha:4153f983102561fff80c0dbc1ba6e23563cf2f7f44fe523b40aa815723527388
  • python2-devel-2.7.18-17.module_el8+2352+bd84b602.tuxcare.els7.x86_64.rpm
    sha:a53d7f48ae6f4d127c7677756c535c785e8cd7bc716ca50507331e6f0bbf8503
  • python2-libs-2.7.18-17.module_el8+2352+bd84b602.tuxcare.els7.x86_64.rpm
    sha:721dfa770cd847be27226b228a0726e3131c4c379f3ae0bbbf1df6802f543dad
  • python2-test-2.7.18-17.module_el8+2352+bd84b602.tuxcare.els7.x86_64.rpm
    sha:5fe21b0e0b7d13d7e1e7c1fefc14913d880f43bda728e46eae5ae5d9a1303aba
  • python2-tkinter-2.7.18-17.module_el8+2352+bd84b602.tuxcare.els7.x86_64.rpm
    sha:35bfe2891b8ed2b29ff7b2d76ebe377422aa9ca8806e4a5bc848a7c83272e9e2
  • python2-tools-2.7.18-17.module_el8+2352+bd84b602.tuxcare.els7.x86_64.rpm
    sha:978bf95adb38be553106e2ba7e758094edab61c5afa13407778958bf9cf496b8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.