podman-5.8.2-4.el9_8
エラータID: AXSA:2026-1491:07
以下項目について対処しました。
[Security Fix]
- Golang には、クロスサイトスクリプティング攻撃を許容して
しまう問題があるため、リモートの攻撃者により、巧妙に細工された
HTML ファイルを介して、任意のコードの実行を可能とする脆弱性が
存在します。(CVE-2026-25681)
- Golang の net/html パッケージには、リモートの攻撃者により、
クロスサイトスクリプティング攻撃を可能とする脆弱性が存在します。
(CVE-2026-27136)
- container-tools の RSA および DSA 公開鍵のパーサーには、
鍵パラメーターサイズのチェック処理の欠落に起因して意図せず CPU
リソースを消費してしまう問題があるため、リモートの攻撃者により、
細工された公開鍵の処理を介して、サービス拒否攻撃 (CPU リソース
の枯渇) を可能とする脆弱性が存在します。(CVE-2026-39829)
- Golang には、ファイルのアクセス権限の処理に不備があり、意図
されたセキュリティ制御を回避してしまう問題があるため、リモートの
攻撃者により、情報の漏洩、およびデータ破壊を可能とする脆弱性が
存在します。(CVE-2026-39832)
- Golang の crypto/ssh パッケージには、NULL ポインタデリファレンス
の問題があるため、リモートの攻撃者により、サービス拒否攻撃を可能と
する脆弱性が存在します。(CVE-2026-39835)
- Golang には、証明書の検証処理に問題があるため、リモートの攻撃者
により、不正な認証を可能とする脆弱性が存在します。(CVE-2026-42508)
- Podman には、コンテナイメージの変数の解析時にホストの環境変数
が漏洩してしまう問題があるため、リモートの攻撃者により、情報の漏洩
を可能とする脆弱性が存在します。(CVE-2026-57231)
パッケージをアップデートしてください。
Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML before rendering.
Parsing arbitrary HTML which is then rendered using Render can result in an unexpected HTML tree. This can be leveraged to execute XSS attacks in applications that attempt to sanitize input HTML before rendering.
The RSA and DSA public key parsers did not enforce size limits on key parameters. A crafted public key with an excessively large modulus or DSA parameter could cause several minutes of CPU consumption during signature verification. This could be triggered by unauthenticated clients during public key authentication. RSA moduli are now limited to 8192 bits, and DSA parameters are validated per FIPS 186-2.
When adding a key to a remote agent constraint extensions such as restrict-destination-v00@openssh.com were not serialized in the request. Destination restrictions were silently stripped when forwarding keys, allowing unrestricted use of the key on the remote host. The client now serializes all constraint extensions. Additionally, the in-memory keyring returned by NewKeyring() now rejects keys with unsupported constraint extensions instead of silently ignoring them.
SSH servers which use CertChecker as a public key callback without setting IsUserAuthority or IsHostAuthority could be caused to panic by a client presenting a certificate. CertChecker now returns an error instead of panicking when these callbacks are nil.
Previously, a revoked 'SignatureKey' belonging to a CA was not correctly checked for revocation. Now, both the 'key' and 'key.SignatureKey' are checked for @revoked.
Podman is a tool for managing OCI containers and pods. From 1.8.1 until 5.8.4, a container image that contains a environment variable with just a key and no value can trick podman into passing that variable from the host into the container. This is made worse by the fact that using an asterisk (*) will cause podman to pass all host variables into the container. So essentially a malicious image can exfiltrate all podman environment variables that are set in the session from where the container is launched. This vulnerability is fixed in 5.8.4 and 6.0.0.
N/A
SRPMS
- podman-5.8.2-4.el9_8.src.rpm
MD5: c2fa3c2356f4d3dc0862e3f8643f102a
SHA-256: ba226a7f01214956c2e65b7abfc0262d230f136336d9aea43700c158d835defa
Size: 21.77 MB
Asianux Server 9 for x86_64
- podman-5.8.2-4.el9_8.x86_64.rpm
MD5: 9e7e866645fc7ae147bfad726dfd3f62
SHA-256: df1cfc6ee395a84c6b3f15ce09f5fe70edef929eb28d1f195db904ffd4e4f4fd
Size: 16.48 MB - podman-docker-5.8.2-4.el9_8.noarch.rpm
MD5: 8282555b788d68ff84fe1dae0682e8c2
SHA-256: 61ec652913639a52c12c0c716b782a83c90ab8ded692d8b93889bb1fbc7fe5a1
Size: 106.39 kB - podman-plugins-5.8.2-4.el9_8.x86_64.rpm
MD5: 45ccffdd03bce2cd3e4396b8c3e9696b
SHA-256: a890ba58cd19ecaeb25ff8f931120f25b8803f1a98b0a05b5e9c22a7572d63b2
Size: 1.49 MB - podman-remote-5.8.2-4.el9_8.x86_64.rpm
MD5: 2c5f15718bc0e1cbdd37b32099843fbd
SHA-256: 4899f9195c8d8d6ceb73b9dbe3b3d0928c24f88c101d534cec5afcdebb44d257
Size: 10.13 MB - podman-tests-5.8.2-4.el9_8.x86_64.rpm
MD5: e76c8a316a6dfe040f1ffc22ab8c7778
SHA-256: 8abc99e1ce1670cd4f8201c5eeac1999378ae29b59b9f00aa782a43a794332ba
Size: 11.73 MB