REDHAT-BUG-2431373: Medium severity Python poplib vulnerability
Published Jan 20, 2026
·Updated
The poplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters.
Affected Software
1 affected component
Python poplib
Event History
Jan 20, 2026
Data Sourced
via Red Hat·10:02 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2431373?
The severity of REDHAT-BUG-2431373 is considered moderate due to the potential for command injection.
2
How do I fix REDHAT-BUG-2431373?
To fix REDHAT-BUG-2431373, update the Python poplib module to the latest version that includes the security patch.
3
What systems are affected by REDHAT-BUG-2431373?
REDHAT-BUG-2431373 affects systems using the Python poplib module without necessary updates.
4
Is REDHAT-BUG-2431373 exploitable remotely?
Yes, REDHAT-BUG-2431373 can be exploited remotely if a vulnerable system processes user-controlled commands.
5
What mitigations are recommended for REDHAT-BUG-2431373?
Mitigations for REDHAT-BUG-2431373 include rejecting commands that contain control characters.