Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 445
Alerts This Week
Warning Icon 1 445

Fedora 43 Skopeo Significant Denial of Service Resolution CVE-2026-27145

fedora
Calendar Grey July 26, 2026
Scroller Fedora
Resolve a critical DoS issue in Fedora 43 with skopeo through an important update fixing CVE-2026-27145.
Fedora released an update for skopeo addressing a DoS vulnerability related to DNS SAN processing, enhancing security and including a rebuild with a fixed version of Go.

Summary

Command line utility to inspect images and repositories directly on Docker

registries without the need to pull them.

Update Information:

Security fix for CVE-2026-27145 (Go stdlib crypto/x509 DoS vulnerability). Rebuild with golang-1.25.12 which includes the fix.

Change Log

* Wed Jul 22 2026 Lokesh Mandvekar - 1:1.22.2-2 - Rebuild for CVE-2026-27145

References


[ 1 ] Bug #2494281 - CVE-2026-27145 skopeo: golang crypto/x509: Denial of Service via excessive processing of DNS SAN entries [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2494281

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-4d9a2870e5' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: skopeo
Product: Fedora 43
Version: 1.22.2
Release: 2.fc43
Summary: Inspect container images and repositories on registries

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.