[CLSA-2025:1762180294] podman: Fix of CVE-2024-9676
Type:
security
Severity:
Moderate
Release date:
2025-11-03 14:31:43 UTC
Description:
- CVE-2024-9676: fix symlink traversal vulnerability in containers/storage library to prevent hanging and denial of service when running malicious images via automatically assigned user namespace
Updated packages:
  • podman-4.4.1-13.el9_2.tuxcare.els5.x86_64.rpm
    sha:b1df8137a72585672ef7a9035e2cde8d5c0a42894d80d9c4e1b18e2df5a8d568
  • podman-docker-4.4.1-13.el9_2.tuxcare.els5.noarch.rpm
    sha:270e294c556366904952d4920abd3c87028e747aefdad4810cd3690b858e7c89
  • podman-gvproxy-4.4.1-13.el9_2.tuxcare.els5.x86_64.rpm
    sha:337a969746a063c5eee4f2497b0a091b272a13f72b07a26b1236e80b3d73d729
  • podman-plugins-4.4.1-13.el9_2.tuxcare.els5.x86_64.rpm
    sha:cf74fb490f8e5ba7e8eb06f7e0dfa8d3c4502a7e2f4b2221936092c0d04b07aa
  • podman-remote-4.4.1-13.el9_2.tuxcare.els5.x86_64.rpm
    sha:d5a3d93a60cf6e28faa540d95084f5989cb9cd797fceadf4ffb8b9ff85e9befb
  • podman-tests-4.4.1-13.el9_2.tuxcare.els5.x86_64.rpm
    sha:830de69b9b18131669475279721f2ad52a40690d2ba2eef310a0b4a7d33e9920
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.