RHSA-2025:12850: Moderate: opentelemetry-collector security update
Collector with the supported components for a Red Hat build of OpenTelemetrySecurity Fix(es): net/http: Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Other sources
Moderate: opentelemetry-collector security update
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:12850?
The severity of RHSA-2025:12850 is classified as moderate.
How do I fix RHSA-2025:12850?
To fix RHSA-2025:12850, update the opentelemetry-collector package to the latest version available in the repository.
What products are affected by RHSA-2025:12850?
RHSA-2025:12850 affects various versions of Red Hat Enterprise Linux including for x86_64, ARM 64, Power, and IBM z Systems.
What type of update is RHSA-2025:12850?
RHSA-2025:12850 is a security update for the opentelemetry-collector.
Why is it important to address RHSA-2025:12850?
Addressing RHSA-2025:12850 is important to mitigate potential security vulnerabilities that could impact system integrity and confidentiality.