Release Info

Advisory: CLSA-2025:1759505734

OS: AlmaLinux 9.2 ESU

Public date: 2025-10-03 15:35:41.879019

Project: podman

Version: 4.4.1-13.el9_2.tuxcare.els4

Errata link: https://errata.tuxcare.com/els_os/almalinux9.2esu/CLSA-2025-1759505734.html

Changelog

- CVE-2025-9566: fix kube play vulnerability that allows following volume symlinks onto the host filesystem. Prevent symlink-based host escapes in ConfigMap and Secret volumes

Update

Update command: dnf update podman*

Packages list

podman-4.4.1-13.el9_2.tuxcare.els4.x86_64.rpm podman-docker-4.4.1-13.el9_2.tuxcare.els4.noarch.rpm podman-gvproxy-4.4.1-13.el9_2.tuxcare.els4.x86_64.rpm podman-plugins-4.4.1-13.el9_2.tuxcare.els4.x86_64.rpm podman-remote-4.4.1-13.el9_2.tuxcare.els4.x86_64.rpm podman-tests-4.4.1-13.el9_2.tuxcare.els4.x86_64.rpm

CVEs

CVE-2025-9566