Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-63163-0

Опубликовано: 04 сент. 2026
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2026-63163-0: container-tools:ol8 security update (IMPORTANT)

aardvark-dns [2:1.10.1-2]

  • build off the RHEL maintenance branch
  • Resolves: RHEL-59129

[2:1.10.0-1]

[2:1.9.0-1]

[2:1.8.0-1]

[2:1.7.0-1]

[2:1.6.0-1]

[2:1.5.0-2]

  • always stay offline during build
  • Related: #2123641

[2:1.5.0-1]

[2:1.4.0-1]

[2:1.3.0-1]

buildah [2:1.33.14-6]

  • rebuild with updated Go to fix CVE-2026-42499
  • Resolves: RHEL-241668 RHEL-242027 RHEL-242107 RHEL-242222 RHEL-242343 RHEL-242382 RHEL-251834

cockpit-podman [84.1-1]

[84-1]

[83-1]

[82-1]

[81-1]

[80-1]

[79-1]

[78-1]

[77-1]

[75-1]

conmon [3:2.1.10-1]

[3:2.1.8-1]

[3:2.1.7-1]

[3:2.1.6-1]

[3:2.1.5-1]

[3:2.1.4-1]

[3:2.1.2-2]

  • revert conmon to 2.1.2
  • Related: #2061390

[2:2.1.3-1]

[2:2.1.2-2]

[2:2.1.2-1]

containernetworking-plugins [1:1.4.0-10]

  • rebuild with updated Go to fix CVE-2026-42499
  • Resolves: RHEL-241534 RHEL-241902 RHEL-242024 RHEL-242099 RHEL-242217 RHEL-242335

[1:1.4.0-9]

  • rebuild with Go 1.25.11 to fix CVE-2026-33818, CVE-2026-56853, CVE-2026-56858, CVE-2026-56859, CVE-2026-56860, CVE-2026-56862

[1:1.4.0-8]

  • rebuild for CVE-2025-68121
  • Resolves: RHEL-149265

[1:1.4.0-7]

  • rebuild for CVE-2025-61729
  • Resolves: RHEL-140529

[1:1.4.0-6]

  • rebuild for CVE-2025-22871
  • Resolves: RHEL-89244

[1:1.4.0-5]

  • rebuild for golang fixes
  • Related: RHEL-28452

[1:1.4.0-4]

  • rebuild for golang fixes
  • Related: RHEL-28452

[1:1.4.0-3]

  • rebuild for CVE-2024-1394
  • Resolves: RHEL-24294

[1:1.4.0-2]

  • rebuild
  • Resolves: RHEL-18390

[1:1.4.0-1]

containers-common [1-82.0.1]

  • Updated removed references [Orabug: 33473101] (Alex Burmashev)
  • Adjust registries.conf (Nikita Gerasimov)
  • remove references to RedHat registry (Nikita Gerasimov)

container-selinux [2:2.229.0-3]

  • add user_t confined user container support (cherry-pick of upstream PR #443)
  • Resolves: RHEL-135342

[2:2.229.0-2]

  • remove watch statements properly for RHEL8 and lower
  • Related: Jira:RHEL-2110

[2:2.229.0-1]

[2:2.228.1-1]

[2:2.228.0-1]

[2:2.227.0-1]

[2:2.226.0-1]

[2:2.224.0-1]

[2:2.222.0-1]

[2:2.221.1-1]

criu [3.18-5]

  • rebuild to preserve upgrade path
  • Related: RHEL-32671

[3.18-4]

  • switch to egg-info on 8.9
  • Related: #2176055

[3.18-3]

  • remove --progress-bar option
  • Related: #2176055

[3.18-2]

  • update to 3.18
  • Related: #2176055

[3.17-1]

  • update to 3.17
  • Resolves: #2175794

[3.15-2]

  • add gating tests
  • Related: #1971718

[3.15-1]

  • add -devel and -libs subpackages
  • Resolves: #1971718

[3.12-9]

  • Added additional fixup patches for the socket labelling

[3.12-8]

  • Patch for socket labelling has changed upstream

[3.12-4]

  • Applied patch to correctly restore socket()s

crun [1.14.3-4]

  • rebuild with updated Go to fix CVE-2026-42499
  • Resolves: RHEL-241893

[1.14.3-3]

  • rebuild with Go 1.25.11 to fix CVE-2026-33818, CVE-2026-56853, CVE-2026-56858, CVE-2026-56859, CVE-2026-56860, CVE-2026-56862

[1.14.3-2]

  • remove BR libgcrypt-devel, no longer needed
  • Related: Jira:RHEL-2110

[1.14.3-1]

[1.14.1-1]

[1.14-1]

[1.13-1]

[1.12-1]

[1.11.2-1]

[1.11.1-1]

fuse-overlayfs [1.13-1]

[1.12-1]

[1.11-1]

[1.10-2]

[1.10-1]

[1.9-1]

[1.8.2-2]

  • BuildRequires: /usr/bin/go-md2man
  • Related: #2061390

[1.8.2-1]

[1.8.1-1]

[1.8-1]

libslirp [4.4.0-2]

  • rebuild to preserve upgrade path 8.9 -> 8.10
  • Related: RHEL-32671

[4.4.0-1]

  • Fix CVE-2021-3592 CVE-2021-3593 CVE-2021-3594 CVE-2021-3595 out-of-bounds access
  • Related: #1934415

[4.3.1-1]

[4.3.0-5]

  • replace patch for CVE-2020-10756 with dedicated upstream one
  • Related: #1821193

[4.3.0-4]

  • fix 'CVE-2020-10756 QEMU: slirp: networking out-of-bounds read information disclosure vulnerability'
  • Related: #1821193

[4.3.0-3]

[4.3.0-2]

  • initial libslirp build for container-tools 8.3.0 module
  • Resolves: #1821193

[4.3.0-1]

  • New v4.3.0 release

[4.2.0-2]

  • CVE-2020-1983 fix

[4.2.0-1]

  • New v4.2.0 release

netavark [2:1.10.3-1]

[2:1.10.2-1]

[2:1.10.1-1]

[2:1.10.0-1]

[2:1.9.0-1]

[2:1.8.0-2]

  • fix directory for systemd units
  • Related: Jira:RHEL-2110

[2:1.8.0-1]

[2:1.7.0-1]

[2:1.6.0-1]

[2:1.5.0-5]

  • fix --dns-add command is not functioning
  • Resolves: #2182897

oci-seccomp-bpf-hook [1.2.10-3]

  • rebuild with updated Go to fix CVE-2026-42499
  • Resolves: RHEL-241530 RHEL-241898 RHEL-242095 RHEL-242331

[1.2.10-2]

  • rebuild with Go 1.25.11 to fix CVE-2026-33818, CVE-2026-56853, CVE-2026-56858, CVE-2026-56859, CVE-2026-56860, CVE-2026-56862

[1.2.10-1]

[1.2.9-1]

[1.2.8-2]

[1.2.8-1]

[1.2.7-1]

[1.2.6-1]

[1.2.5-2]

  • BuildRequires: /usr/bin/go-md2man
  • Related: #2061390

[1.2.5-1]

podman [4.9.4-37.0.1]

  • Fixes issue of container created in cgroupv2 not start in cgroupv1 [Orabug: 36136813]
  • Fixes container memory limit not set after host is rebooted with cgroupv2 [Orabug: 36136802]
  • Fixes issue of podman execvp error while using podmansh [Orabug: 36756665]

python-podman [4.9.0-3]

  • sync with release-4.9 branch
  • Resolves: RHEL-31069

[4.9.0-2]

  • depend directly on urllib3
  • Resolves: RHEL-43567

[4.9.0-1]

[4.8.2-1]

[4.8.0.post1-1]

[4.7.0-1]

[4.6.0-1]

[4.5.1-1]

[4.5.0-1]

[4.4.1-1]

runc [4:1.2.9-6]

  • rebuild with updated Go to fix CVE-2026-42499
  • Resolves: RHEL-241537 RHEL-241905 RHEL-242338

[4:1.2.9-5]

  • rebuild with Go 1.25.11 to fix CVE-2026-33818, CVE-2026-56853, CVE-2026-56858, CVE-2026-56859, CVE-2026-56860, CVE-2026-56862

[4:1.2.9-4]

  • rebuild for CVE-2025-68121
  • Resolves: RHEL-149266

[4:1.2.9-3]

  • rebuild for CVE-2025-61729
  • Resolves: RHEL-140533

[4:1.2.9-2]

[4:1.2.5-2]

  • fix permission regression
  • Related: RHEL-122384

[4:1.2.5-1]

  • fix CVE-2025-31133 CVE-2025-52565 CVE-2025-52881
  • Resolves: RHEL-122384

[1:1.1.12-6]

  • Add CPU affinity feature from Kir Kolishkin
  • Resolves: RHEL-74865

[1:1.1.12-5]

  • bump golang buildrequires
  • add no_openssl build tag
  • Resolves RHEL-55757

[1:1.1.12-4]

  • rebuild for golang fixes
  • Related: RHEL-28452

skopeo [2:1.14.6-4]

  • rebuild with updated Go to fix CVE-2026-42499
  • Resolves: RHEL-241531 RHEL-241899 RHEL-242023 RHEL-242096 RHEL-242216 RHEL-242332 RHEL-251848

[2:1.14.6-3]

  • rebuild with Go 1.25.11 to fix CVE-2026-33818, CVE-2026-56853, CVE-2026-56858, CVE-2026-56859, CVE-2026-56860, CVE-2026-56862

[2:1.14.6-2]

  • Rebuild for CVE-2026-32281
  • Resolves: RHEL-177067

[2:1.14.6-1]

  • update to 1.14.6 to fix CVE-2026-34986
  • Resolves: RHEL-164976

[2:1.14.5-9]

  • rebuild for CVE-2026-34986
  • Resolves: RHEL-164976

[2:1.14.5-8]

  • rebuild for CVE-2026-25679
  • Resolves: RHEL-156633

[2:1.14.5-7]

  • rebuild for CVE-2025-68121
  • Resolves: RHEL-149267

[2:1.14.5-6]

  • rebuild for CVE-2025-61729
  • Resolves: RHEL-140534

[2:1.14.5-5]

  • rebuild for CVE-2025-58183
  • Resolves: RHEL-125659

[2:1.14.5-4]

  • rebuild for CVE-2025-22871
  • Resolves: RHEL-89254

slirp4netns [1.2.3-1]

[1.2.2-1]

[1.2.1-1]

[1.2.0-3]

  • BuildRequires: /usr/bin/go-md2man
  • Related: #2176055

[1.2.0-2]

  • BuildRequires: /usr/bin/go-md2man
  • Related: #2061390

[1.2.0-1]

[1.1.8-2]

  • fix gating - don't use insecure functions - thanks to Marc-Andre Lureau
  • Related: #2001445

[1.1.8-1]

[1.1.7-2]

  • exclude i686 because of build failures
  • Related: #1883490

[1.1.7-1]

udica [0.2.6-21]

  • bump release to preserve update path
  • Resolves: RHEL-32671

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module container-tools:ol8 is enabled

aardvark-dns

1.10.1-2.module+el8.10.0+91022+ea2ec71c

buildah

1.33.14-6.module+el8.10.0+91022+ea2ec71c

buildah-tests

1.33.14-6.module+el8.10.0+91022+ea2ec71c

cockpit-podman

84.1-1.module+el8.10.0+91022+ea2ec71c

conmon

2.1.10-1.module+el8.10.0+91022+ea2ec71c

container-selinux

2.229.0-3.module+el8.10.0+91022+ea2ec71c

containernetworking-plugins

1.4.0-10.module+el8.10.0+91022+ea2ec71c

containers-common

1-82.0.1.module+el8.10.0+91022+ea2ec71c

crit

3.18-5.module+el8.10.0+91022+ea2ec71c

criu

3.18-5.module+el8.10.0+91022+ea2ec71c

criu-devel

3.18-5.module+el8.10.0+91022+ea2ec71c

criu-libs

3.18-5.module+el8.10.0+91022+ea2ec71c

crun

1.14.3-4.module+el8.10.0+91022+ea2ec71c

fuse-overlayfs

1.13-1.module+el8.10.0+91022+ea2ec71c

libslirp

4.4.0-2.module+el8.10.0+91022+ea2ec71c

libslirp-devel

4.4.0-2.module+el8.10.0+91022+ea2ec71c

netavark

1.10.3-1.module+el8.10.0+91022+ea2ec71c

oci-seccomp-bpf-hook

1.2.10-3.module+el8.10.0+91022+ea2ec71c

podman

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-catatonit

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-docker

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-gvproxy

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-plugins

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-remote

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-tests

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

python3-criu

3.18-5.module+el8.10.0+91022+ea2ec71c

python3-podman

4.9.0-3.module+el8.10.0+91022+ea2ec71c

runc

1.2.9-6.module+el8.10.0+91022+ea2ec71c

skopeo

1.14.6-4.module+el8.10.0+91022+ea2ec71c

skopeo-tests

1.14.6-4.module+el8.10.0+91022+ea2ec71c

slirp4netns

1.2.3-1.module+el8.10.0+91022+ea2ec71c

udica

0.2.6-21.module+el8.10.0+91022+ea2ec71c

Oracle Linux x86_64

Module container-tools:ol8 is enabled

aardvark-dns

1.10.1-2.module+el8.10.0+91022+ea2ec71c

buildah

1.33.14-6.module+el8.10.0+91022+ea2ec71c

buildah-tests

1.33.14-6.module+el8.10.0+91022+ea2ec71c

cockpit-podman

84.1-1.module+el8.10.0+91022+ea2ec71c

conmon

2.1.10-1.module+el8.10.0+91022+ea2ec71c

container-selinux

2.229.0-3.module+el8.10.0+91022+ea2ec71c

containernetworking-plugins

1.4.0-10.module+el8.10.0+91022+ea2ec71c

containers-common

1-82.0.1.module+el8.10.0+91022+ea2ec71c

crit

3.18-5.module+el8.10.0+91022+ea2ec71c

criu

3.18-5.module+el8.10.0+91022+ea2ec71c

criu-devel

3.18-5.module+el8.10.0+91022+ea2ec71c

criu-libs

3.18-5.module+el8.10.0+91022+ea2ec71c

crun

1.14.3-4.module+el8.10.0+91022+ea2ec71c

fuse-overlayfs

1.13-1.module+el8.10.0+91022+ea2ec71c

libslirp

4.4.0-2.module+el8.10.0+91022+ea2ec71c

libslirp-devel

4.4.0-2.module+el8.10.0+91022+ea2ec71c

netavark

1.10.3-1.module+el8.10.0+91022+ea2ec71c

oci-seccomp-bpf-hook

1.2.10-3.module+el8.10.0+91022+ea2ec71c

podman

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-catatonit

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-docker

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-gvproxy

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-plugins

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-remote

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

podman-tests

4.9.4-37.0.1.module+el8.10.0+91022+ea2ec71c

python3-criu

3.18-5.module+el8.10.0+91022+ea2ec71c

python3-podman

4.9.0-3.module+el8.10.0+91022+ea2ec71c

runc

1.2.9-6.module+el8.10.0+91022+ea2ec71c

skopeo

1.14.6-4.module+el8.10.0+91022+ea2ec71c

skopeo-tests

1.14.6-4.module+el8.10.0+91022+ea2ec71c

slirp4netns

1.2.3-1.module+el8.10.0+91022+ea2ec71c

udica

0.2.6-21.module+el8.10.0+91022+ea2ec71c

Связанные уязвимости

rocky
10 дней назад

Important: container-tools:rhel8 security update

rocky
10 дней назад

Important: grafana security update

rocky
11 дней назад

Important: grafana security update

rocky
11 дней назад

Important: grafana security update

oracle-oval
12 дней назад

ELSA-2026-63022-0: grafana security update (IMPORTANT)