{"document":{"aggregate_severity":{"text":"mittel"},"category":"csaf_base","csaf_version":"2.0","distribution":{"tlp":{"label":"WHITE","url":"https://www.first.org/tlp/"}},"lang":"de-DE","notes":[{"category":"legal_disclaimer","text":"Das BSI ist als Anbieter für die eigenen, zur Nutzung bereitgestellten Inhalte nach den allgemeinen Gesetzen verantwortlich. Nutzerinnen und Nutzer sind jedoch dafür verantwortlich, die Verwendung und/oder die Umsetzung der mit den Inhalten bereitgestellten Informationen sorgfältig im Einzelfall zu prüfen."},{"category":"description","text":"Red Hat Enterprise Linux (RHEL) ist eine populäre Linux-Distribution.","title":"Produktbeschreibung"},{"category":"summary","text":"Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux ausnutzen, um Sicherheitsvorkehrungen zu umgehen oder um einen Denial-of-Service-Zustand herbeizuführen.","title":"Angriff"},{"category":"general","text":"- Linux","title":"Betroffene Betriebssysteme"}],"publisher":{"category":"other","contact_details":"csaf-provider@cert-bund.de","name":"Bundesamt für Sicherheit in der Informationstechnik","namespace":"https://www.bsi.bund.de"},"references":[{"category":"self","summary":"WID-SEC-W-2026-3214 - CSAF Version","url":"https://wid.cert-bund.de/.well-known/csaf/white/2026/wid-sec-w-2026-3214.json"},{"category":"self","summary":"WID-SEC-2026-3214 - Portal Version","url":"https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-3214"},{"category":"external","summary":"Red Hat Security Advisory RHSA-2026:64774 vom 2026-09-07","url":"https://access.redhat.com/errata/RHSA-2026:64774"},{"category":"external","summary":"Red Hat Security Advisory RHSA-2026:64795 vom 2026-09-07","url":"https://access.redhat.com/errata/RHSA-2026:64795"},{"category":"external","summary":"SUSE Security Update SUSE-SU-2026:23404-1 vom 2026-09-10","url":"https://lists.suse.com/pipermail/sle-security-updates/2026-September/028769.html"},{"category":"external","summary":"Rocky Linux Security Advisory RLSA-2026:64795 vom 2026-09-09","url":"https://errata.build.resf.org/RLSA-2026:64795"},{"category":"external","summary":"Rocky Linux Security Advisory RLSA-2026:64774 vom 2026-09-09","url":"https://errata.build.resf.org/RLSA-2026:64774"},{"category":"external","summary":"Oracle Linux Security Advisory ELSA-2026-64774 vom 2026-09-09","url":"https://linux.oracle.com/errata/ELSA-2026-64774-0.html"},{"category":"external","summary":"Oracle Linux Security Advisory ELSA-2026-64795 vom 2026-09-09","url":"https://linux.oracle.com/errata/ELSA-2026-64795-0.html"}],"source_lang":"en-US","title":"Red Hat Enterprise Linux (python-cryptography): Mehrere Schwachstellen","tracking":{"current_release_date":"2026-09-09T22:00:00.000+00:00","generator":{"date":"2026-09-10T11:37:58.576+00:00","engine":{"name":"BSI-WID","version":"1.6.0"}},"id":"WID-SEC-W-2026-3214","initial_release_date":"2026-09-07T22:00:00.000+00:00","revision_history":[{"date":"2026-09-07T22:00:00.000+00:00","number":"1","summary":"Initiale Fassung"},{"date":"2026-09-09T22:00:00.000+00:00","number":"2","summary":"Neue Updates von SUSE, Rocky Enterprise Software Foundation und Oracle Linux aufgenommen"}],"status":"final","version":"2"}},"product_tree":{"branches":[{"branches":[{"category":"product_name","name":"Oracle Linux","product":{"name":"Oracle Linux","product_id":"T056236","product_identification_helper":{"cpe":"cpe:/o:oracle:linux:-"}}}],"category":"vendor","name":"Oracle"},{"branches":[{"category":"product_name","name":"RESF Rocky Linux","product":{"name":"RESF Rocky Linux","product_id":"T054581","product_identification_helper":{"cpe":"cpe:/o:resf:rocky_linux:-"}}}],"category":"vendor","name":"RESF"},{"branches":[{"branches":[{"category":"product_version","name":"9","product":{"name":"Red Hat Enterprise Linux 9","product_id":"T059108","product_identification_helper":{"cpe":"cpe:/o:redhat:enterprise_linux:9"}}},{"category":"product_version","name":"10","product":{"name":"Red Hat Enterprise Linux 10","product_id":"T059109","product_identification_helper":{"cpe":"cpe:/o:redhat:enterprise_linux:10"}}}],"category":"product_name","name":"Enterprise Linux"}],"category":"vendor","name":"Red Hat"},{"branches":[{"category":"product_name","name":"SUSE Linux","product":{"name":"SUSE Linux","product_id":"T054646","product_identification_helper":{"cpe":"cpe:/o:suse:suse_linux:-"}}}],"category":"vendor","name":"SUSE"}]},"vulnerabilities":[{"cve":"CVE-2026-69248","product_status":{"known_affected":["T056236","T059108","T059109","T054581","T054646"]},"release_date":"2026-09-07T22:00:00.000+00:00","title":"CVE-2026-69248"},{"cve":"CVE-2026-69249","product_status":{"known_affected":["T056236","T059108","T059109","T054581","T054646"]},"release_date":"2026-09-07T22:00:00.000+00:00","title":"CVE-2026-69249"}]}