Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
6.5
OpenShift 18.0: Python library allows remote code execution
RHSA-2026:1959
Summary
A security update for OpenShift 18.0 affects a library used by the platform. If exploited, this vulnerability could allow an attacker to execute arbitrary code on the system. Red Hat has released a patch to fix the issue, and users should update their systems as soon as possible.
What to do
- Update redhat python-eventlet to version 0:0.33.1-7.el9ost.
- Update redhat python3-eventlet to version 0:0.33.1-7.el9ost.
Affected software
| Vendor | Product | Affected versions | Fix available |
|---|---|---|---|
| redhat | python-eventlet | <= 0:0.33.1-7.el9ost | 0:0.33.1-7.el9ost |
| redhat | python3-eventlet | <= 0:0.33.1-7.el9ost | 0:0.33.1-7.el9ost |
Original title
Red Hat Security Advisory: Red Hat OpenStack Services on OpenShift 18.0 (python-eventlet) security update
osv CVSS3.1
6.5
- https://access.redhat.com/errata/RHSA-2026:1959 Vendor Advisory
- https://access.redhat.com/security/updates/classification/#moderate Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2391958 Third Party Advisory
- https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_1959.j... Vendor Advisory
- https://access.redhat.com/security/cve/CVE-2025-58068 Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2025-58068 Vendor Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2025-58068 Vendor Advisory
- https://github.com/eventlet/eventlet/commit/0bfebd1117d392559e25b4bfbfcc941754de... Third Party Advisory
- https://github.com/eventlet/eventlet/pull/1062 Third Party Advisory
- https://github.com/eventlet/eventlet/security/advisories/GHSA-hw6f-rjfj-j7j7 Third Party Advisory
Published: 13 Feb 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026