Release opentelemetry-collector-0.135.0-3.el9_7 ALSA-2026:1908
- Dominant language
- No language data
- Stars
- 2
- Forks
- 0
- PR merge metrics
- No merged PRs in 30d
Description
opentelemetry-collector security update
Severity: Important
Description
Collector with the supported components for a AlmaLinux build of OpenTelemetry
Security Fix(es):
* crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected packages:
opentelemetry-collector-0.135.0-3.el9_7.x86_64
opentelemetry-collector-0.135.0-3.el9_7.s390x
opentelemetry-collector-0.135.0-3.el9_7.ppc64le
opentelemetry-collector-0.135.0-3.el9_7.aarch64
Contributor guide
Assessment
This issue has not been assessed yet.