Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-3336

Опубликовано: 27 мар. 2025
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2025-3336: podman security update (IMPORTANT)

[5.2.2-15.0.1]

  • podman: do not set rlimits to the default value [Orabug: 37310981]
  • Add devices on container startup, not on creation
  • overlay: Put should ignore ENINVAL for Unmount [Orabug: 36234694]
  • Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117404]

[4:5.2.2-15]

[4:5.2.2-14]

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

podman

5.2.2-15.0.1.el9_5

podman-docker

5.2.2-15.0.1.el9_5

podman-plugins

5.2.2-15.0.1.el9_5

podman-remote

5.2.2-15.0.1.el9_5

podman-tests

5.2.2-15.0.1.el9_5

Oracle Linux x86_64

podman

5.2.2-15.0.1.el9_5

podman-docker

5.2.2-15.0.1.el9_5

podman-plugins

5.2.2-15.0.1.el9_5

podman-remote

5.2.2-15.0.1.el9_5

podman-tests

5.2.2-15.0.1.el9_5

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
4 месяца назад

SSH servers which implement file transfer protocols are vulnerable to a denial of service attack from clients which complete the key exchange slowly, or not at all, causing pending content to be read into memory, but never transmitted.

CVSS3: 7.5
redhat
4 месяца назад

SSH servers which implement file transfer protocols are vulnerable to a denial of service attack from clients which complete the key exchange slowly, or not at all, causing pending content to be read into memory, but never transmitted.

CVSS3: 7.5
nvd
4 месяца назад

SSH servers which implement file transfer protocols are vulnerable to a denial of service attack from clients which complete the key exchange slowly, or not at all, causing pending content to be read into memory, but never transmitted.

CVSS3: 7.5
msrc
3 месяца назад

Описание отсутствует

CVSS3: 7.5
debian
4 месяца назад

SSH servers which implement file transfer protocols are vulnerable to ...