RHSA-2025:9149: Moderate: skopeo security update
Moderate: skopeo security update
Other sources
The skopeo command lets you inspect images from container image registries, get images and image layers, and use signatures to create and verify files. Security Fix(es): net/http: Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:9149?
RHSA-2025:9149 has a moderate severity level.
How do I fix RHSA-2025:9149?
To fix RHSA-2025:9149, update the skopeo package to version 1.18.1-2.el10_0 or later.
Which systems are affected by RHSA-2025:9149?
RHSA-2025:9149 affects various versions of Red Hat Enterprise Linux including those for IBM z Systems, Power, and ARM architectures.
What package needs to be updated for RHSA-2025:9149?
The package that needs to be updated for RHSA-2025:9149 is the skopeo package.
Is there a workaround for RHSA-2025:9149?
There is no official workaround for RHSA-2025:9149; updating the affected package is recommended.