Количество 25
Количество 25
CVE-2025-9566
There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file. Binary-Affected: podman Upstream-version-introduced: v4.0.0 Upstream-version-fixed: v5.6.1
CVE-2025-9566
There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file. Binary-Affected: podman Upstream-version-introduced: v4.0.0 Upstream-version-fixed: v5.6.1
CVE-2025-9566
There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file. Binary-Affected: podman Upstream-version-introduced: v4.0.0 Upstream-version-fixed: v5.6.1
CVE-2025-9566
Podman: podman kube play command may overwrite host files
CVE-2025-9566
There's a vulnerability in podman where an attacker may use the kube p ...
SUSE-SU-2025:3782-1
Security update for podman
SUSE-SU-2025:03584-1
Security update for podman
SUSE-SU-2025:03534-1
Security update for podman
RLSA-2026:18722
Important: podman security update
RLSA-2025:15901
Important: podman security update
RLSA-2025:15900
Important: podman security update
GHSA-wp3j-xq48-xpjw
podman kube play symlink traversal vulnerability
ELSA-2026-18722
ELSA-2026-18722: podman security update (IMPORTANT)
ELSA-2026-18289
ELSA-2026-18289: podman security update (IMPORTANT)
ELSA-2025-15904
ELSA-2025-15904: container-tools:ol8 security update (IMPORTANT)
ELSA-2025-15901
ELSA-2025-15901: podman security update (IMPORTANT)
ELSA-2025-15900
ELSA-2025-15900: podman security update (IMPORTANT)
BDU:2025-13147
Уязвимость программного средства управления и запуска OCI-контейнеров Podman, связанная с неправильным разрешением ссылки перед доступом к файлу, позволяющая нарушителю вызвать отказ в обслуживании
ROS-20251014-08
Уязвимость podman
RLSA-2025:15904
Important: container-tools:rhel8 security update
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-9566 There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file. Binary-Affected: podman Upstream-version-introduced: v4.0.0 Upstream-version-fixed: v5.6.1 | CVSS3: 8.1 | 1% Низкий | 11 месяцев назад | |
CVE-2025-9566 There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file. Binary-Affected: podman Upstream-version-introduced: v4.0.0 Upstream-version-fixed: v5.6.1 | CVSS3: 8.1 | 1% Низкий | 11 месяцев назад | |
CVE-2025-9566 There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file. Binary-Affected: podman Upstream-version-introduced: v4.0.0 Upstream-version-fixed: v5.6.1 | CVSS3: 8.1 | 1% Низкий | 11 месяцев назад | |
CVE-2025-9566 Podman: podman kube play command may overwrite host files | 1% Низкий | 11 месяцев назад | ||
CVE-2025-9566 There's a vulnerability in podman where an attacker may use the kube p ... | CVSS3: 8.1 | 1% Низкий | 11 месяцев назад | |
SUSE-SU-2025:3782-1 Security update for podman | 1% Низкий | 9 месяцев назад | ||
SUSE-SU-2025:03584-1 Security update for podman | 1% Низкий | 10 месяцев назад | ||
SUSE-SU-2025:03534-1 Security update for podman | 1% Низкий | 10 месяцев назад | ||
RLSA-2026:18722 Important: podman security update | 1% Низкий | 2 месяца назад | ||
RLSA-2025:15901 Important: podman security update | 1% Низкий | 10 месяцев назад | ||
RLSA-2025:15900 Important: podman security update | 1% Низкий | 10 месяцев назад | ||
GHSA-wp3j-xq48-xpjw podman kube play symlink traversal vulnerability | CVSS3: 8.1 | 1% Низкий | 11 месяцев назад | |
ELSA-2026-18722 ELSA-2026-18722: podman security update (IMPORTANT) | около 1 месяца назад | |||
ELSA-2026-18289 ELSA-2026-18289: podman security update (IMPORTANT) | 10 дней назад | |||
ELSA-2025-15904 ELSA-2025-15904: container-tools:ol8 security update (IMPORTANT) | 11 месяцев назад | |||
ELSA-2025-15901 ELSA-2025-15901: podman security update (IMPORTANT) | 11 месяцев назад | |||
ELSA-2025-15900 ELSA-2025-15900: podman security update (IMPORTANT) | 11 месяцев назад | |||
BDU:2025-13147 Уязвимость программного средства управления и запуска OCI-контейнеров Podman, связанная с неправильным разрешением ссылки перед доступом к файлу, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 8.1 | 1% Низкий | 11 месяцев назад | |
ROS-20251014-08 Уязвимость podman | CVSS3: 8.1 | 1% Низкий | 10 месяцев назад | |
RLSA-2025:15904 Important: container-tools:rhel8 security update | 8 месяцев назад |
Уязвимостей на страницу