opentelemetry-collector-0.127.0-2.el9_6
エラータID: AXSA:2025-10876:06
Release date:
Friday, September 19, 2025 - 20:49
Subject:
opentelemetry-collector-0.127.0-2.el9_6
Affected Channels:
MIRACLE LINUX 9 for x86_64
Severity:
Moderate
Description:
Collector with the supported components for a Red Hat build of OpenTelemetry
Security Fix(es):
net/http: Sensitive headers not cleared on cross-origin redirect in net/http
(CVE-2025-4673)
For more details about the security issue(s), including the impact, a CVSS
score, acknowledgments, and other related information, refer to the CVE page(s)
listed in the References section.
CVE(s):
CVE-2025-4673
Solution:
Update packages.
CVEs:
CVE-2025-4673
Proxy-Authorization and Proxy-Authenticate headers persisted on cross-origin redirects potentially leaking sensitive information.
Proxy-Authorization and Proxy-Authenticate headers persisted on cross-origin redirects potentially leaking sensitive information.
Additional Info:
N/A
Download:
SRPMS
- opentelemetry-collector-0.127.0-2.el9_6.src.rpm
MD5: 2bc7eb45291dea8a412ed94dd823ebcf
SHA-256: 16565ccc9d33e762c3cd9c2a6ec12839f788ed9d8311afa9072e3c1a07b91e55
Size: 22.58 MB
Asianux Server 9 for x86_64
- opentelemetry-collector-0.127.0-2.el9_6.x86_64.rpm
MD5: c85b3e3e550c4694269ae730929c783f
SHA-256: fe0dd02b1eabc271eed0c216e7d8e9c955d32a43b5e7f374c84bb617bf8137f4
Size: 33.04 MB