<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 14:57:46 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-362219</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-362219</link>
      <description>EUVD-2026-362219</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-362219</guid>
    </item>
    <item>
      <title>fkie_cve-2025-4953</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-4953</link>
      <description>&lt;p&gt;A flaw was found in Podman. In a Containerfile or Podman, data written to RUN --mount=type=bind mounts during the podman build is not discarded. This issue can lead to files created within the container appearing in the temporary build context directory on the host, leaving the created files accessible.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A flaw was found in Podman. In a Containerfile or Podman, data written to RUN --mount=type=bind mounts during the podman build is not discarded. This issue can lead to files created within the container appearing in the temporary build context directory on the host, leaving the created files accessible.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-4953</guid>
    </item>
    <item>
      <title>GHSA-m68q-4hqr-mc6f — Podman Creates Temporary File with Insecure Permissions</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-m68q-4hqr-mc6f</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/containers/podman/v5&lt;/p&gt;
&lt;p&gt;A flaw was found in Podman. In a Containerfile or Podman, data written to RUN --mount=type=bind mounts during the podman build is not discarded. This issue can lead to files created within the container appearing in the temporary build context directory on the host, leaving the created files accessible.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/containers/podman/v5&lt;/p&gt;
&lt;p&gt;A flaw was found in Podman. In a Containerfile or Podman, data written to RUN --mount=type=bind mounts during the podman build is not discarded. This issue can lead to files created within the container appearing in the temporary build context directory on the host, leaving the created files accessible.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-m68q-4hqr-mc6f</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-4953 — Podman: build context bind mount</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-4953</link>
      <description>msrc_CVE-2025-4953</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-4953</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15564-1 — govulncheck-vulndb-0.0.20250917T170349-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15564-1</link>
      <description>&lt;p&gt;govulncheck-vulndb-0.0.20250917T170349-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;govulncheck-vulndb-0.0.20250917T170349-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15564-1</guid>
    </item>
    <item>
      <title>RHSA-2024:8690 — Red Hat Security Advisory: OpenShift Container Platform 4.13.53 packages and  security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:8690</link>
      <description>&lt;p&gt;Podman: Buildah: cri-o: FIPS Crypto-Policy Directory Mounting Issue in containers/common Go Library buildah: Buildah allows arbitrary directory mount Podman: Buildah: CRI-O: symlink traversal vulnerability in the containers/storage library can cause Denial of Service (DoS) go/parser: golang: Calling any of the Parse functions containing deeply nested literals can cause a panic/stack exhaustion encoding/gob: golang: Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion go/build/constraint: golang: Calling Parse on a &amp;#34;// +build&amp;#34; build tag line with deeply nested expressions can cause a panic due to stack exhaustion podman: Build Context Bind Mount&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Podman: Buildah: cri-o: FIPS Crypto-Policy Directory Mounting Issue in containers/common Go Library buildah: Buildah allows arbitrary directory mount Podman: Buildah: CRI-O: symlink traversal vulnerability in the containers/storage library can cause Denial of Service (DoS) go/parser: golang: Calling any of the Parse functions containing deeply nested literals can cause a panic/stack exhaustion encoding/gob: golang: Calling Decoder.Decode on a message which contains deeply nested structures can cause a panic due to stack exhaustion go/build/constraint: golang: Calling Parse on a &amp;#34;// +build&amp;#34; build tag line with deeply nested expressions can cause a panic due to stack exhaustion podman: Build Context Bind Mount&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:8690</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-4953</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-4953</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:22.04:LTS: libpod, Ubuntu:Pro:24.04:LTS: libpod, Ubuntu:25.10: podman, Ubuntu:26.04:LTS: podman&lt;/p&gt;
&lt;p&gt;A flaw was found in Podman. In a Containerfile or Podman, data written to RUN --mount=type=bind mounts during the podman build is not discarded. This issue can lead to files created within the container appearing in the temporary build context directory on the host, leaving the created files accessible.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:22.04:LTS: libpod, Ubuntu:Pro:24.04:LTS: libpod, Ubuntu:25.10: podman, Ubuntu:26.04:LTS: podman&lt;/p&gt;
&lt;p&gt;A flaw was found in Podman. In a Containerfile or Podman, data written to RUN --mount=type=bind mounts during the podman build is not discarded. This issue can lead to files created within the container appearing in the temporary build context directory on the host, leaving the created files accessible.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-4953</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-2075 — Podman: Schwachstelle ermöglicht Manipulation von Dateien</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2075</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Podman ausnutzen, um Dateien zu manipulieren und Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Podman ausnutzen, um Dateien zu manipulieren und Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-2075</guid>
    </item>
  </channel>
</rss>
