RHSA-2025:2789HighCVSS 8.1

Red Hat Security Advisory: Red Hat build of OpenTelemetry 3.5.0 release

Published
March 13, 2025
Last Modified
June 2, 2026

🔗 CVE IDs covered (5)

📋 Description

CVE-2024-45336 — golang: net/http: net/http: sensitive headers incorrectly sent after cross-domain redirect CVE-2024-56171 — libxml2: Use-After-Free in libxml2 CVE-2025-22866 — crypto/internal/nistec: golang: Timing sidechannel for P-256 on ppc64le in crypto/internal/nistec CVE-2025-24528 — krb5: overflow when calculating ulog block size CVE-2025-24928 — libxml2: Stack-based buffer overflow in xmlSnprintfElements of libxml2

🔗 References (9)