RHSA-2025:7535HighCVSS 7.4
Red Hat Security Advisory: Red Hat OpenStack Platform 18.0 (python-h11) security update
🔗 CVE IDs covered (1)
📋 Description
CVE-2025-43859 — h11: h11 accepts some malformed Chunked-Encoding bodies
🎯 Affected products3
- Red Hat OpenStack Services on OpenShift 18.0
- python-h11-0:0.12.0-4.el9ost.src as a component of Red Hat OpenStack Services on OpenShift 18.0
- python3-h11-0:0.12.0-4.el9ost.noarch as a component of Red Hat OpenStack Services on OpenShift 18.0
✅ Remediation
For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Workaround: Ensure any applications using h11 are behind a correctly configured reverse proxy will prevent exploitation of this flaw.