Red Hat Enterprise Linux users were alerted to multiple package-level vulnerabilities that can cause denial of service, affecting both urllib3 and Python Protobuf components distributed for the platform. One advisory reported multiple flaws in urllib3 that could be abused to disrupt application availability, while a separate advisory identified a denial-of-service vulnerability in Python Protobuf.
The notices indicate that the impact is centered on service interruption rather than code execution, but the affected libraries are widely used in Python-based applications and backend services on Red Hat Enterprise Linux systems. Organizations running exposed or business-critical workloads that depend on these packages should prioritize reviewing installed versions, applying Red Hat-provided updates, and validating that dependent applications remain stable after remediation.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
dCERT published advisory 2026-0471 for a denial-of-service vulnerability affecting the Python Protobuf component in Red Hat Enterprise Linux.
dCERT published advisory 2026-0205 covering multiple vulnerabilities in Red Hat Enterprise Linux's urllib3 component that could allow denial of service.
dCERT published advisory 2026-0197 for a denial-of-service vulnerability affecting the urllib3 component in Red Hat OpenShift and OpenShift AI. The advisory identifies the issue as impacting OpenShift-related products rather than Red Hat Enterprise Linux.
dCERT published advisory 2026-0010 covering multiple vulnerabilities affecting Red Hat Enterprise Linux. The reference identifies this as a separate RHEL advisory from later urllib3 and Python Protobuf notices.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
4 references tracked. Mallory keeps watching after this page renders.
dcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourcedcert.de
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.