[ALSA-2025:15608] Important: python3.12-cryptography security update
Type:
security
Severity:
important
Release date:
2025-09-10
Description:
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python-cryptography: NULL pointer dereference with pkcs12.serialize_key_and_certificates when called with a non-matching certificate and private key and an hmac_hash override (CVE-2024-26130) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 python3.12-cryptography-41.0.7-2.el9_6.1.aarch64.rpm d929660d29f66742dcf2b40701ca1601fcd0aa9a7fbb7d3b8ecd397cec5a3d91
ppc64le python3.12-cryptography-41.0.7-2.el9_6.1.ppc64le.rpm 0d09b0998d6c372140a0f51bf404b9c44a4b0b243fd98aeeec91ab2c25268b5d
s390x python3.12-cryptography-41.0.7-2.el9_6.1.s390x.rpm 066e0756192635e3ae821e7146ce4a709cb813f24a7b00714bbb0dff24b9ae1a
x86_64 python3.12-cryptography-41.0.7-2.el9_6.1.x86_64.rpm 45cb0264b0267fef88c591935657da6dd287c3b3b109d9a4ce41f58eedb886b6
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.