概述
Important: opentelemetry-collector security update
类型/严重性
Security Advisory: Important
标题
An update for opentelemetry-collector is now available for Red Hat Enterprise Linux 9.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
描述
Collector with the supported components for a Red Hat build of OpenTelemetry
Security Fix(es):
- golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
- crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
受影响的产品
-
Red Hat Enterprise Linux for x86_64 9 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.8 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 9 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.8 s390x
-
Red Hat Enterprise Linux for Power, little endian 9 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.8 ppc64le
-
Red Hat Enterprise Linux for ARM 64 9 aarch64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.8 aarch64
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.8 ppc64le
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.8 x86_64
-
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.8 aarch64
-
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.8 s390x
-
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.8 x86_64
-
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.8 aarch64
-
Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.8 ppc64le
-
Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.8 s390x
修复
-
BZ - 2434432
- CVE-2025-61726 golang: net/url: Memory exhaustion in query parameter parsing in net/url
-
BZ - 2437111
- CVE-2025-68121 crypto/tls: Unexpected session resumption in crypto/tls
备注:
可能有这些软件包的更新版本。
点击软件包名称查看详情。
Red Hat Enterprise Linux for x86_64 9
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| x86_64 |
|
opentelemetry-collector-0.144.0-1.el9_7.x86_64.rpm
|
SHA-256: 4d0977ba4014a45949c93d6d4f36e35d52c7fedec390b202a07d3112232fb1ac |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| x86_64 |
|
opentelemetry-collector-0.144.0-1.el9_7.x86_64.rpm
|
SHA-256: 4d0977ba4014a45949c93d6d4f36e35d52c7fedec390b202a07d3112232fb1ac |
Red Hat Enterprise Linux for IBM z Systems 9
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| s390x |
|
opentelemetry-collector-0.144.0-1.el9_7.s390x.rpm
|
SHA-256: 01fcd2e8c94dc5f0c070bb1cadc90b1210f1dbd851dea91bdb50fb9fec1fb423 |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| s390x |
|
opentelemetry-collector-0.144.0-1.el9_7.s390x.rpm
|
SHA-256: 01fcd2e8c94dc5f0c070bb1cadc90b1210f1dbd851dea91bdb50fb9fec1fb423 |
Red Hat Enterprise Linux for Power, little endian 9
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| ppc64le |
|
opentelemetry-collector-0.144.0-1.el9_7.ppc64le.rpm
|
SHA-256: 9e0a20ae96e95d24df70004edac77e7023ab00cd28279cc1e51e5885b44511cd |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| ppc64le |
|
opentelemetry-collector-0.144.0-1.el9_7.ppc64le.rpm
|
SHA-256: 9e0a20ae96e95d24df70004edac77e7023ab00cd28279cc1e51e5885b44511cd |
Red Hat Enterprise Linux for ARM 64 9
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| aarch64 |
|
opentelemetry-collector-0.144.0-1.el9_7.aarch64.rpm
|
SHA-256: b379bac9288b09b1916bb14a91c40a091c417530ec0ba17432830bef74519f90 |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| aarch64 |
|
opentelemetry-collector-0.144.0-1.el9_7.aarch64.rpm
|
SHA-256: b379bac9288b09b1916bb14a91c40a091c417530ec0ba17432830bef74519f90 |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| ppc64le |
|
opentelemetry-collector-0.144.0-1.el9_7.ppc64le.rpm
|
SHA-256: 9e0a20ae96e95d24df70004edac77e7023ab00cd28279cc1e51e5885b44511cd |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| x86_64 |
|
opentelemetry-collector-0.144.0-1.el9_7.x86_64.rpm
|
SHA-256: 4d0977ba4014a45949c93d6d4f36e35d52c7fedec390b202a07d3112232fb1ac |
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| aarch64 |
|
opentelemetry-collector-0.144.0-1.el9_7.aarch64.rpm
|
SHA-256: b379bac9288b09b1916bb14a91c40a091c417530ec0ba17432830bef74519f90 |
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| s390x |
|
opentelemetry-collector-0.144.0-1.el9_7.s390x.rpm
|
SHA-256: 01fcd2e8c94dc5f0c070bb1cadc90b1210f1dbd851dea91bdb50fb9fec1fb423 |
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| x86_64 |
|
opentelemetry-collector-0.144.0-1.el9_7.x86_64.rpm
|
SHA-256: 4d0977ba4014a45949c93d6d4f36e35d52c7fedec390b202a07d3112232fb1ac |
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| aarch64 |
|
opentelemetry-collector-0.144.0-1.el9_7.aarch64.rpm
|
SHA-256: b379bac9288b09b1916bb14a91c40a091c417530ec0ba17432830bef74519f90 |
Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| ppc64le |
|
opentelemetry-collector-0.144.0-1.el9_7.ppc64le.rpm
|
SHA-256: 9e0a20ae96e95d24df70004edac77e7023ab00cd28279cc1e51e5885b44511cd |
Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.8
| SRPM |
|
opentelemetry-collector-0.144.0-1.el9_7.src.rpm
|
SHA-256: a5ff5e47d154784635d6f90238708886c321a5a3b804ebb4299b3cd6a4fe4b47 |
| s390x |
|
opentelemetry-collector-0.144.0-1.el9_7.s390x.rpm
|
SHA-256: 01fcd2e8c94dc5f0c070bb1cadc90b1210f1dbd851dea91bdb50fb9fec1fb423 |