[CLSA-2026:1776968105] skopeo: Fix of CVE-2026-25679
Type:
security
Severity:
Important
Release date:
2026-04-23 18:15:10 UTC
Description:
- rebuild with newer golang version 1.25.7-1.el9_6.tuxcare.els2 to fix the following CVE - CVE-2026-25679: fix insufficient validation of host/authority in net/url.Parse by rejecting invalid URLs with IPv6 literals not at the start of the host
Updated packages:
  • skopeo-1.18.1-2.el9_6.tuxcare.els2.x86_64.rpm
    sha:169390e6433521f8c842352df74c330eabb2fe4a592baf6afba479eb70d12f57
  • skopeo-tests-1.18.1-2.el9_6.tuxcare.els2.x86_64.rpm
    sha:2bbac7ab9d15a15fae5f7db0beef1c5e4d3b3e12e1b3f26e2f793004281b30d4
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.