ESSA-2026:0053: Moderate: SUSE Liberty Linux Moderate: python security update

Update Advisories for SUSE Liberty Linux suse-liberty-linux-updates at lists.suse.com
Fri Mar 27 16:08:01 UTC 2026


# Moderate: python security update

Announcement ID: ESSA-2026:0053
Rating: Moderate

Cross-References:

  * CVE-2025-15366
  * CVE-2025-15367



CVSS scores:

  * CVE-2025-15366 ( SUSE ): 6.7 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:H
  * CVE-2025-15366 ( SUSE ): 6 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N
  * CVE-2025-15367 ( SUSE ): 6.7 CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:H/A:H
  * CVE-2025-15367 ( SUSE ): 6 CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:L/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Products:

  * SUSE Liberty Linux 7 LTSS


An update that solves 2 vulnerabilities can now be installed.

## Description:

Security Fix(es): cpython: IMAP command injection in user-controlled commands (CVE-2025-15366) 
 cpython: POP3 command injection in user-controlled commands (CVE-2025-15367) 
  

## Package List:

  * SUSE Liberty Linux 7 LTSS:
    * python 2.7.5-94.el7_9.3.2
    * python-debug 2.7.5-94.el7_9.3.2
    * python-devel 2.7.5-94.el7_9.3.2
    * python-libs 2.7.5-94.el7_9.3.2
    * python-test 2.7.5-94.el7_9.3.2
    * python-tools 2.7.5-94.el7_9.3.2
    * tkinter 2.7.5-94.el7_9.3.2

## References:

  * https://www.suse.com/security/cve/CVE-2025-15366.html
  * https://www.suse.com/security/cve/CVE-2025-15367.html


More information about the suse-liberty-linux-updates mailing list