Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:38504

Опубликовано: 13 июл. 2026
Источник: rocky
Оценка: Important

Описание

Important: container-tools:rhel8 security update

The container-tools module contains tools for working with containers, notably podman, buildah, skopeo, and runc.

Security Fix(es):

  • net: golang: Go net package: Denial of Service via long CNAME response in LookupCNAME (CVE-2026-33811)

  • golang.org/x/crypto/ssh: golang: golang.org/x/crypto/ssh: Denial of Service via crafted SSH certificate (CVE-2026-39835)

  • podman: Podman: Information disclosure via malicious container image environment variables (CVE-2026-57231)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
aardvark-dnsx86_642.module+el8.10.0+40133+32c21f88aardvark-dns-1.10.1-2.module+el8.10.0+40133+32c21f88.x86_64.rpm
cockpit-podmannoarch1.module+el8.10.0+40133+32c21f88cockpit-podman-84.1-1.module+el8.10.0+40133+32c21f88.noarch.rpm
conmonx86_641.module+el8.10.0+40133+32c21f88conmon-2.1.10-1.module+el8.10.0+40133+32c21f88.x86_64.rpm
containernetworking-pluginsx86_648.module+el8.10.0+40133+32c21f88containernetworking-plugins-1.4.0-8.module+el8.10.0+40133+32c21f88.x86_64.rpm
containers-commonx86_6482.module+el8.10.0+40133+32c21f88containers-common-1-82.module+el8.10.0+40133+32c21f88.x86_64.rpm
critx86_645.module+el8.10.0+40133+32c21f88crit-3.18-5.module+el8.10.0+40133+32c21f88.x86_64.rpm
criux86_645.module+el8.10.0+40133+32c21f88criu-3.18-5.module+el8.10.0+40133+32c21f88.x86_64.rpm
criu-develx86_645.module+el8.10.0+40133+32c21f88criu-devel-3.18-5.module+el8.10.0+40133+32c21f88.x86_64.rpm
criu-libsx86_645.module+el8.10.0+40133+32c21f88criu-libs-3.18-5.module+el8.10.0+40133+32c21f88.x86_64.rpm
crunx86_642.module+el8.10.0+40133+32c21f88crun-1.14.3-2.module+el8.10.0+40133+32c21f88.x86_64.rpm

Показывать по

Связанные уязвимости

CVSS3: 7.5
ubuntu
3 месяца назад

When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash.

CVSS3: 7.5
redhat
3 месяца назад

When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash.

CVSS3: 7.5
nvd
3 месяца назад

When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash.

msrc
3 месяца назад

Crash when handling long CNAME response in net

CVSS3: 7.5
debian
3 месяца назад

When using LookupCNAME with the cgo DNS resolver, a very long CNAME re ...