Bug 2405901 - CVE-2025-62513 openbao: OpenBao leaks HTTPRawBody in Audit Logs [epel-8]
Summary: CVE-2025-62513 openbao: OpenBao leaks HTTPRawBody in Audit Logs [epel-8]
Keywords:
Status: ON_QA
Alias: None
Product: Fedora EPEL
Classification: Fedora
Component: openbao
Version: epel8
Hardware: Unspecified
OS: Unspecified
medium
medium
Target Milestone: ---
Assignee: Dave Dykstra
QA Contact:
URL:
Whiteboard: {"flaws": ["b52fdb1c-b9d2-4c4d-bca7-a...
Depends On:
Blocks: CVE-2025-62513
TreeView+ depends on / blocked
 
Reported: 2025-10-22 20:14 UTC by Jon Moroney
Modified: 2025-10-24 01:48 UTC (History)
2 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Type: ---
Embargoed:


Attachments (Terms of Use)

Description Jon Moroney 2025-10-22 20:14:03 UTC
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.

The following link provides references to all essential vulnerability management information. If something is wrong or missing, please contact a member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essential+Documents+for+Engineering+Teams

Comment 1 Fedora Update System 2025-10-23 17:59:45 UTC
FEDORA-EPEL-2025-bdd3bd8616 (openbao-2.4.3-1.el8) has been submitted as an update to Fedora EPEL 8.
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-bdd3bd8616

Comment 2 Fedora Update System 2025-10-23 17:59:57 UTC
FEDORA-EPEL-2025-a67eb81816 (openbao-2.4.3-1.el10_1) has been submitted as an update to Fedora EPEL 10.1.
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-a67eb81816

Comment 3 Fedora Update System 2025-10-23 18:00:08 UTC
FEDORA-2025-ab1fce816d (openbao-2.4.3-1.fc41) has been submitted as an update to Fedora 41.
https://bodhi.fedoraproject.org/updates/FEDORA-2025-ab1fce816d

Comment 4 Fedora Update System 2025-10-23 22:28:00 UTC
FEDORA-2025-0687b2debc has been pushed to the Fedora 43 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2025-0687b2debc`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2025-0687b2debc

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 5 Fedora Update System 2025-10-24 00:24:53 UTC
FEDORA-EPEL-2025-3975babff2 has been pushed to the Fedora EPEL 10.2 testing repository.

You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-3975babff2

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 6 Fedora Update System 2025-10-24 00:32:18 UTC
FEDORA-EPEL-2025-a67eb81816 has been pushed to the Fedora EPEL 10.1 testing repository.

You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-a67eb81816

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 7 Fedora Update System 2025-10-24 00:41:41 UTC
FEDORA-EPEL-2025-7bec9f8025 has been pushed to the Fedora EPEL 10.0 testing repository.

You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-7bec9f8025

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 8 Fedora Update System 2025-10-24 00:53:09 UTC
FEDORA-EPEL-2025-ffd437e0e8 has been pushed to the Fedora EPEL 9 testing repository.

You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-ffd437e0e8

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 9 Fedora Update System 2025-10-24 00:59:27 UTC
FEDORA-EPEL-2025-bdd3bd8616 has been pushed to the Fedora EPEL 8 testing repository.

You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2025-bdd3bd8616

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 10 Fedora Update System 2025-10-24 01:26:38 UTC
FEDORA-2025-ab1fce816d has been pushed to the Fedora 41 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2025-ab1fce816d`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2025-ab1fce816d

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 11 Fedora Update System 2025-10-24 01:48:34 UTC
FEDORA-2025-4bf7795b4e has been pushed to the Fedora 42 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2025-4bf7795b4e`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2025-4bf7795b4e

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.


Note You need to log in before you can comment on or make changes to this bug.