Количество 77
Количество 77
RLSA-2026:38504
Important: container-tools:rhel8 security update
ELSA-2026-38504
ELSA-2026-38504: container-tools:ol8 security update (IMPORTANT)
CVE-2026-33811
When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash.
CVE-2026-33811
When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash.
CVE-2026-33811
When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash.
CVE-2026-33811
Crash when handling long CNAME response in net
CVE-2026-33811
When using LookupCNAME with the cgo DNS resolver, a very long CNAME re ...
RLSA-2026:37123
Important: podman security, bug fix, and enhancement update
ELSA-2026-37123
ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT)
RLSA-2026:37072
Important: podman security, bug fix, and enhancement update
RLSA-2026:39319
Important: git-lfs security update
RLSA-2026:39272
Important: git-lfs security update
RLSA-2026:39266
Important: git-lfs security update
RLSA-2026:36617
Important: oci-seccomp-bpf-hook security update
GHSA-497x-jcxf-m478
When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash.
ELSA-2026-39319
ELSA-2026-39319: git-lfs security update (IMPORTANT)
ELSA-2026-39266
ELSA-2026-39266: git-lfs security update (IMPORTANT)
ELSA-2026-36617
ELSA-2026-36617: oci-seccomp-bpf-hook security update (IMPORTANT)
BDU:2026-07950
Уязвимость функций LookupCNAME() языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании
CVE-2026-57231
Podman is a tool for managing OCI containers and pods. From 1.8.1 until 5.8.4, a container image that contains a environment variable with just a key and no value can trick podman into passing that variable from the host into the container. This is made worse by the fact that using an asterisk (*) will cause podman to pass all host variables into the container. So essentially a malicious image can exfiltrate all podman environment variables that are set in the session from where the container is launched. This vulnerability is fixed in 5.8.4 and 6.0.0.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
RLSA-2026:38504 Important: container-tools:rhel8 security update | 18 дней назад | |||
ELSA-2026-38504 ELSA-2026-38504: container-tools:ol8 security update (IMPORTANT) | 16 дней назад | |||
CVE-2026-33811 When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash. | CVSS3: 7.5 | 1% Низкий | 3 месяца назад | |
CVE-2026-33811 When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash. | CVSS3: 7.5 | 1% Низкий | 3 месяца назад | |
CVE-2026-33811 When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash. | CVSS3: 7.5 | 1% Низкий | 3 месяца назад | |
CVE-2026-33811 Crash when handling long CNAME response in net | 1% Низкий | 3 месяца назад | ||
CVE-2026-33811 When using LookupCNAME with the cgo DNS resolver, a very long CNAME re ... | CVSS3: 7.5 | 1% Низкий | 3 месяца назад | |
RLSA-2026:37123 Important: podman security, bug fix, and enhancement update | 21 день назад | |||
ELSA-2026-37123 ELSA-2026-37123: podman security, bug fix, and enhancement update (IMPORTANT) | 21 день назад | |||
RLSA-2026:37072 Important: podman security, bug fix, and enhancement update | 21 день назад | |||
RLSA-2026:39319 Important: git-lfs security update | 1% Низкий | 16 дней назад | ||
RLSA-2026:39272 Important: git-lfs security update | 1% Низкий | 16 дней назад | ||
RLSA-2026:39266 Important: git-lfs security update | 1% Низкий | 16 дней назад | ||
RLSA-2026:36617 Important: oci-seccomp-bpf-hook security update | 1% Низкий | 21 день назад | ||
GHSA-497x-jcxf-m478 When using LookupCNAME with the cgo DNS resolver, a very long CNAME response can trigger a double-free of C memory and a crash. | CVSS3: 7.5 | 1% Низкий | 3 месяца назад | |
ELSA-2026-39319 ELSA-2026-39319: git-lfs security update (IMPORTANT) | 17 дней назад | |||
ELSA-2026-39266 ELSA-2026-39266: git-lfs security update (IMPORTANT) | 17 дней назад | |||
ELSA-2026-36617 ELSA-2026-36617: oci-seccomp-bpf-hook security update (IMPORTANT) | 23 дня назад | |||
BDU:2026-07950 Уязвимость функций LookupCNAME() языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
CVE-2026-57231 Podman is a tool for managing OCI containers and pods. From 1.8.1 until 5.8.4, a container image that contains a environment variable with just a key and no value can trick podman into passing that variable from the host into the container. This is made worse by the fact that using an asterisk (*) will cause podman to pass all host variables into the container. So essentially a malicious image can exfiltrate all podman environment variables that are set in the session from where the container is launched. This vulnerability is fixed in 5.8.4 and 6.0.0. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад |
Уязвимостей на страницу