ELSA-2025-21702

ELSA-2025-21702 - podman security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2025-11-25

Description


[5.6.0-7.0.1]
- Add devices on container startup, not on creation
- overlay: Put should ignore ENINVAL for Unmount [Orabug: 36234694]
- Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117404]

[6:5.6.0-7]
- update to the latest content of https://github.com/containers/podman/tree/v5.6-rhel
(https://github.com/containers/podman/commit/2791007)
- fixes '[Minor Incident] CVE-2025-52881 podman: container escape and denial of service due to arbitrary write gadgets and procfs write redirects [rhel-9.7.z]'
- Resolves: RHEL-126913

[6:5.6.0-6]
- update to the latest content of https://github.com/containers/podman/tree/v5.6-rhel
(https://github.com/containers/podman/commit/61231e1)
- fixes 'Timeouts while pushing Sigstore logs to Rekor - [RHEL 9.7] 0day'
- Resolves: RHEL-111076

[6:5.6.0-5]
- rebuild as last build was built in the wrong tag
- Related: RHEL-110317

[6:5.6.0-4]
- update to the latest content of https://github.com/containers/podman/tree/v5.6-rhel
(https://github.com/containers/podman/commit/c5a3735)
- fixes 'Can not find network create and rm message from podman event when set --events-backend to journald - [RHEL 9.7] 0day'
- Resolves: RHEL-110317

[6:5.6.0-3]
- update to the latest content of https://github.com/containers/podman/tree/v5.6-rhel
(https://github.com/containers/podman/commit/7078b79)
- fixes 'CVE-2025-9566 podman: Podman kube play command may overwrite host files [rhel-9.7]'
- Resolves: RHEL-113151


Related CVEs


CVE-2025-52881

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) podman-5.6.0-7.0.1.el9_7.src.rpm11338cb08123432c1335b81e31da22b95203d1ce57f925cb0441a496ef3d0897-ol9_aarch64_appstream
podman-5.6.0-7.0.1.el9_7.aarch64.rpm1709453aee8be2ee94f96ac444c2ce72eb7a53e598ffd840d490b2d333a93882-ol9_aarch64_appstream
podman-docker-5.6.0-7.0.1.el9_7.noarch.rpm58a7dc4bf8f9b039b5994afd4adc786bf1393defe6c77bd8df54c13716ba1d36-ol9_aarch64_appstream
podman-plugins-5.6.0-7.0.1.el9_7.aarch64.rpme53e718f5a81aec227444496771b14f04d37a92808d215c8d6b1c19a47c8c4bd-ol9_aarch64_appstream
podman-remote-5.6.0-7.0.1.el9_7.aarch64.rpm71bcf7909b9f52e0bd78ccc4326ecb43b6f81cfb17cef311fe2761b0987ec57a-ol9_aarch64_appstream
podman-tests-5.6.0-7.0.1.el9_7.aarch64.rpm6f884c0742982d98523515678fb620ff4659a15b1631b69b2694f3f3c2d10499-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) podman-5.6.0-7.0.1.el9_7.src.rpm11338cb08123432c1335b81e31da22b95203d1ce57f925cb0441a496ef3d0897-ol9_x86_64_appstream
podman-5.6.0-7.0.1.el9_7.x86_64.rpmb26ae6259ff4b4261cd85ebe3765286b6c1540579e09a696ef189ef8232a191b-ol9_x86_64_appstream
podman-docker-5.6.0-7.0.1.el9_7.noarch.rpm58a7dc4bf8f9b039b5994afd4adc786bf1393defe6c77bd8df54c13716ba1d36-ol9_x86_64_appstream
podman-plugins-5.6.0-7.0.1.el9_7.x86_64.rpmcea4365586448751ef02ffe90a7d7bfb5e13afdca50841923ceaddefb96579d8-ol9_x86_64_appstream
podman-remote-5.6.0-7.0.1.el9_7.x86_64.rpmd3988c68d4a1b3dec4e1deb1e8e98e96952ccfc7fa0456359048f59e4c3552fd-ol9_x86_64_appstream
podman-tests-5.6.0-7.0.1.el9_7.x86_64.rpmaebf8afeaf7c6c7a0cc6af41b15802e6eef78c611f4a504c7b98dc4050c43077-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete