<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 16:55:40 +0000</lastBuildDate>
    <item>
      <title>ALSA-2025:15900 — Important: podman security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2025:15900</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: podman, AlmaLinux:9: podman-docker, AlmaLinux:9: podman-plugins, AlmaLinux:9: podman-remote, AlmaLinux:9: podman-tests&lt;/p&gt;
&lt;p&gt;The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* podman: Podman kube play command may overwrite host files (CVE-2025-9566)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: podman, AlmaLinux:9: podman-docker, AlmaLinux:9: podman-plugins, AlmaLinux:9: podman-remote, AlmaLinux:9: podman-tests&lt;/p&gt;
&lt;p&gt;The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* podman: Podman kube play command may overwrite host files (CVE-2025-9566)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2025:15900</guid>
    </item>
    <item>
      <title>bdu:2025-13147</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2025-13147</link>
      <description>bdu:2025-13147</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2025-13147</guid>
    </item>
    <item>
      <title>BELL-CVE-2025-9566</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2025-9566</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: podman, Alpaquita:25: podman, Alpaquita:stream: podman&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: podman, Alpaquita:25: podman, Alpaquita:stream: podman&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2025-9566</guid>
    </item>
    <item>
      <title>EUVD-2026-377382</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-377382</link>
      <description>EUVD-2026-377382</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-377382</guid>
    </item>
    <item>
      <title>fkie_cve-2025-9566</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2025-9566</link>
      <description>&lt;p&gt;There&amp;#39;s a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file.&lt;/p&gt;
&lt;p&gt;Binary-Affected: podman
Upstream-version-introduced: v4.0.0
Upstream-version-fixed: v5.6.1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;There&amp;#39;s a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file.&lt;/p&gt;
&lt;p&gt;Binary-Affected: podman
Upstream-version-introduced: v4.0.0
Upstream-version-fixed: v5.6.1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2025-9566</guid>
    </item>
    <item>
      <title>GHSA-wp3j-xq48-xpjw — podman kube play symlink traversal vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wp3j-xq48-xpjw</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/containers/podman/v5, Go: github.com/containers/podman/v4&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;The podman kube play command can overwrite host files when the kube file contains a ConfigMap or Secret volume mount and the volume already contains a symlink to a host file.
This allows a malicious container to write to arbitrary files on the host BUT the attacker only controls the target path not the contents that will be written to the file. The contents are defined in the yaml file by the end user.&lt;/p&gt;
&lt;p&gt;### Requirements to exploit:
podman kube play must be used with a ConfigMap or Secret volume mount AND must be run more than once on the same volume. All the attacker has to do is create the malicious symlink on the volume the first time it is started. After that all following starts would follow the symlink and write to the host location.&lt;/p&gt;
&lt;p&gt;### Patches
Fixed in podman v5.6.1
https://github.com/containers/podman/commit/43fbde4e665fe6cee6921868f04b7ccd3de5ad89&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;Don&amp;#39;t use podman kube play with ConfigMap or Secret volume mounts.&lt;/p&gt;
&lt;p&gt;### PR with test for CI&lt;/p&gt;
&lt;p&gt;Adding on 9/8/2025 by @TomSweeneyRedHat , this is the PR containing the test in CI: https://github.com/containers/podman/pull/27001&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Go: github.com/containers/podman/v5, Go: github.com/containers/podman/v4&lt;/p&gt;
&lt;p&gt;### Impact&lt;/p&gt;
&lt;p&gt;The podman kube play command can overwrite host files when the kube file contains a ConfigMap or Secret volume mount and the volume already contains a symlink to a host file.
This allows a malicious container to write to arbitrary files on the host BUT the attacker only controls the target path not the contents that will be written to the file. The contents are defined in the yaml file by the end user.&lt;/p&gt;
&lt;p&gt;### Requirements to exploit:
podman kube play must be used with a ConfigMap or Secret volume mount AND must be run more than once on the same volume. All the attacker has to do is create the malicious symlink on the volume the first time it is started. After that all following starts would follow the symlink and write to the host location.&lt;/p&gt;
&lt;p&gt;### Patches
Fixed in podman v5.6.1
https://github.com/containers/podman/commit/43fbde4e665fe6cee6921868f04b7ccd3de5ad89&lt;/p&gt;
&lt;p&gt;### Workarounds&lt;/p&gt;
&lt;p&gt;Don&amp;#39;t use podman kube play with ConfigMap or Secret volume mounts.&lt;/p&gt;
&lt;p&gt;### PR with test for CI&lt;/p&gt;
&lt;p&gt;Adding on 9/8/2025 by @TomSweeneyRedHat , this is the PR containing the test in CI: https://github.com/containers/podman/pull/27001&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wp3j-xq48-xpjw</guid>
    </item>
    <item>
      <title>msrc_CVE-2025-9566 — Podman: podman kube play command may overwrite host files</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2025-9566</link>
      <description>msrc_CVE-2025-9566</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2025-9566</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15538-1 — govulncheck-vulndb-0.0.20250908T141310-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15538-1</link>
      <description>&lt;p&gt;govulncheck-vulndb-0.0.20250908T141310-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;govulncheck-vulndb-0.0.20250908T141310-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15538-1</guid>
    </item>
    <item>
      <title>RHBA-2025:15692 — Red Hat Bug Fix Advisory: OpenShift Container Platform 4.19.12 packages update</title>
      <link>https://cve.radiocsirt.org/vuln/rhba-2025:15692</link>
      <description>&lt;p&gt;podman: Podman kube play command may overwrite host files&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;podman: Podman kube play command may overwrite host files&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhba-2025:15692</guid>
    </item>
    <item>
      <title>SUSE-SU-2025:03534-1 — Security update for podman</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2025:03534-1</link>
      <description>&lt;p&gt;Security update for podman&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for podman&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2025:03534-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2025-9566</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-9566</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:24.04:LTS: libpod, Ubuntu:25.10: podman, Ubuntu:26.04:LTS: podman&lt;/p&gt;
&lt;p&gt;There&amp;#39;s a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file. Binary-Affected: podman Upstream-version-introduced: v4.0.0 Upstream-version-fixed: v5.6.1&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:24.04:LTS: libpod, Ubuntu:25.10: podman, Ubuntu:26.04:LTS: podman&lt;/p&gt;
&lt;p&gt;There&amp;#39;s a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file. Binary-Affected: podman Upstream-version-introduced: v4.0.0 Upstream-version-fixed: v5.6.1&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2025-9566</guid>
    </item>
    <item>
      <title>WID-SEC-W-2025-1974 — Podman: Schwachstelle ermöglicht Manipulation von Dateien</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1974</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Podman ausnutzen, um Dateien zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann eine Schwachstelle in Podman ausnutzen, um Dateien zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1974</guid>
    </item>
  </channel>
</rss>
