Security News

Cybersecurity news aggregator

🔄
HIGH Updates Red Hat Errata

RHSA-2026:34196: Important: podman security update

This Red Hat security update addresses multiple high-severity Denial of Service vulnerabilities (CVSS 7.5) in podman, stemming from flaws in its underlying Go libraries. The vulnerabilities include a crafted JWE object in go-jose (CVE-2026-34986) affecting versions 3.0.0-3.0.4 and 4.0.0-4.1.3, and multiple issues in Go's crypto/x509 and crypto/tls packages (CVE-2026-32281, CVE-2026-32283) affecting Go versions prior to 1.25.9 and 1.26.0-1.26.1. The fixes require updating to go-jose v3.0.5 or v4.1.4 and Go 1.25.9 or 1.26.2, respectively, via the provided Red Hat package update.
Read Full Article →

Red Hat Product Errata RHSA-2026:34196 - Security Advisory Issued: 2026-07-01 Updated: 2026-07-01 RHSA-2026:34196 - Security Advisory Overview Updated Packages Synopsis Important: podman security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for podman is now available for Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes. Security Fix(es): github.com/go-jose/go-jose/v3: github.com/go-jose/go-jose/v4: Go JOSE: Denial of Service via crafted JSON Web Encryption (JWE) object (CVE-2026-34986) crypto/x509: golang: Go crypto/x509: Denial of Service via inefficient certificate chain validation (CVE-2026-32281) crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages (CVE-2026-32283) crypto/x509: crypto/tls: golang: Go: Denial of Service vulnerability in certificate chain building (CVE-2026-32280) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server - AUS 9.4 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 ppc64le Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4 s390x Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.4 x86_64 Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.4 aarch64 Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.4 ppc64le Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.4 s390x Fixes BZ - 2455470 - CVE-2026-34986 github.com/go-jose/go-jose/v3: github.com/go-jose/go-jose/v4: Go JOSE: Denial of Service via crafted JSON Web Encryption (JWE) object BZ - 2456333 - CVE-2026-32281 crypto/x509: golang: Go crypto/x509: Denial of Service via inefficient certificate chain validation BZ - 2456338 - CVE-2026-32283 crypto/tls: golang: Go crypto/tls: Denial of Service via multiple TLS 1.3 key update messages BZ - 2456339 - CVE-2026-32280 crypto/x509: crypto/tls: golang: Go: Denial of Service vulnerability in certificate chain building CVEs CVE-2026-32280 CVE-2026-32281 CVE-2026-32283 CVE-2026-34986 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - AUS 9.4 SRPM podman-4.9.4-20.el9_4.3.src.rpm SHA-256: 3dd088345b2bc4e16fcddea83a413fb90524f5aea3d04c154d6b499e8707fdfd x86_64 podman-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: 6588a32e417656d1153557fa3f1c88cba248ea300117dab192e0158a8578066a podman-debuginfo-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: a4e50e62284e62ef412d263bcdeae2993ffc159e12d32045a9a54b7965d04678 podman-debugsource-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: 2e196e94659d78ac3c4c481f2dd08eed77ab3b55444d22c6c6fae00789b96f91 podman-docker-4.9.4-20.el9_4.3.noarch.rpm SHA-256: f7f5734b5d0d41ec34e34c099d6e69259a7d992a156d6a1f2f4de8c8b2b8e5cd podman-plugins-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: d5056b67db98b8c4b7826b7937ffb3f10860ebe12a0713f3a6e4910fe60ef047 podman-plugins-debuginfo-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: a5f3a2568fdb74a50f7f1a7eb508bd56f180abfef3ecb1d9dfc8f40d792261d6 podman-remote-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: f001e579fb0f5a03ee267636c9c3b1f6aeeef0d2b97bf8e3de52139f455dc4fa podman-remote-debuginfo-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: d9f30ec35cff778a2804833b69da226365751eaab4fcd0f8728a668e3c30cfc3 podman-tests-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: 68ac7184ed1454f982ffad8b28fb37bb0f2c796f51d5ee6a56b2d5ed6a9f54e8 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.4 SRPM podman-4.9.4-20.el9_4.3.src.rpm SHA-256: 3dd088345b2bc4e16fcddea83a413fb90524f5aea3d04c154d6b499e8707fdfd ppc64le podman-4.9.4-20.el9_4.3.ppc64le.rpm SHA-256: 114bed694fed2821e21f61434c62da61f928ce04093b7f9fbaceca8e6a691949 podman-debuginfo-4.9.4-20.el9_4.3.ppc64le.rpm SHA-256: 0d29111f4f0346a709f3d164d6b458fff2ba3bb29d0e10ed3cb3348231c4b325 podman-debugsource-4.9.4-20.el9_4.3.ppc64le.rpm SHA-256: 8b343c47dae1075a8eb3d98f9f2e52f098328c680c77cce50057704cd6b701bd podman-docker-4.9.4-20.el9_4.3.noarch.rpm SHA-256: f7f5734b5d0d41ec34e34c099d6e69259a7d992a156d6a1f2f4de8c8b2b8e5cd podman-plugins-4.9.4-20.el9_4.3.ppc64le.rpm SHA-256: 2f8f1ddb7703e3d5897dfd3752b0c261f56b226be60563359b9b377afe3429a4 podman-plugins-debuginfo-4.9.4-20.el9_4.3.ppc64le.rpm SHA-256: 139234f093dea3ef08f21973bb6bc911bb1d85f113a2936e15dfeb6f1d1b33fc podman-remote-4.9.4-20.el9_4.3.ppc64le.rpm SHA-256: f50d7f523676de6fe807409aa2ab15bbf10cc6f52c3df59bd59f3ed0873a86e8 podman-remote-debuginfo-4.9.4-20.el9_4.3.ppc64le.rpm SHA-256: 5a275a298c0ada57d6c80c1da21323eb8b02165ecece7b51ee14c43349d28170 podman-tests-4.9.4-20.el9_4.3.ppc64le.rpm SHA-256: 3b97e2108661fc29a4dc3495f1dd045e60d69e08364e34c58e16903fbaafb555 Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.4 SRPM podman-4.9.4-20.el9_4.3.src.rpm SHA-256: 3dd088345b2bc4e16fcddea83a413fb90524f5aea3d04c154d6b499e8707fdfd x86_64 podman-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: 6588a32e417656d1153557fa3f1c88cba248ea300117dab192e0158a8578066a podman-debuginfo-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: a4e50e62284e62ef412d263bcdeae2993ffc159e12d32045a9a54b7965d04678 podman-debugsource-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: 2e196e94659d78ac3c4c481f2dd08eed77ab3b55444d22c6c6fae00789b96f91 podman-docker-4.9.4-20.el9_4.3.noarch.rpm SHA-256: f7f5734b5d0d41ec34e34c099d6e69259a7d992a156d6a1f2f4de8c8b2b8e5cd podman-plugins-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: d5056b67db98b8c4b7826b7937ffb3f10860ebe12a0713f3a6e4910fe60ef047 podman-plugins-debuginfo-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: a5f3a2568fdb74a50f7f1a7eb508bd56f180abfef3ecb1d9dfc8f40d792261d6 podman-remote-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: f001e579fb0f5a03ee267636c9c3b1f6aeeef0d2b97bf8e3de52139f455dc4fa podman-remote-debuginfo-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: d9f30ec35cff778a2804833b69da226365751eaab4fcd0f8728a668e3c30cfc3 podman-tests-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: 68ac7184ed1454f982ffad8b28fb37bb0f2c796f51d5ee6a56b2d5ed6a9f54e8 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.4 SRPM podman-4.9.4-20.el9_4.3.src.rpm SHA-256: 3dd088345b2bc4e16fcddea83a413fb90524f5aea3d04c154d6b499e8707fdfd aarch64 podman-4.9.4-20.el9_4.3.aarch64.rpm SHA-256: 946a134b6fe9ef5e5d6c508f696e7461a11c1dc691ad5607af57cd10750709a3 podman-debuginfo-4.9.4-20.el9_4.3.aarch64.rpm SHA-256: fce8b0eb27b46506cf5dea4eda0e550290f9b7b3670ddc772987f0bd21981d2f podman-debugsource-4.9.4-20.el9_4.3.aarch64.rpm SHA-256: 6abb81341e02963c17d05ae50564582712f646f29c5e52eeefc80360d10c8f64 podman-docker-4.9.4-20.el9_4.3.noarch.rpm SHA-256: f7f5734b5d0d41ec34e34c099d6e69259a7d992a156d6a1f2f4de8c8b2b8e5cd podman-plugins-4.9.4-20.el9_4.3.aarch64.rpm SHA-256: 88d6ac22bcdea0e70b8912b24764d829440aadc60bf3477fe1696b10c9695af7 podman-plugins-debuginfo-4.9.4-20.el9_4.3.aarch64.rpm SHA-256: 3fd2d20f705b6fd1256f842e8763018de16f1f6b343495af545876e2fd683356 podman-remote-4.9.4-20.el9_4.3.aarch64.rpm SHA-256: 583922d4386ca2977ed148f0434ac463a5d96e31964de17f46f57836f03a1fe4 podman-remote-debuginfo-4.9.4-20.el9_4.3.aarch64.rpm SHA-256: 5e653151bfcb19a6cd4605836509ba4054ea957eb1d34847b199ca241e53536c podman-tests-4.9.4-20.el9_4.3.aarch64.rpm SHA-256: dd9b30a5a41e2f1048dd865db6191017120f7d2a660c04a260994615702f12cf Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.4 SRPM podman-4.9.4-20.el9_4.3.src.rpm SHA-256: 3dd088345b2bc4e16fcddea83a413fb90524f5aea3d04c154d6b499e8707fdfd s390x podman-4.9.4-20.el9_4.3.s390x.rpm SHA-256: 8c6b0ebbd7863ae79e40f4d02718e4f2dfd9e7e934712277faae4ef45e51d08b podman-debuginfo-4.9.4-20.el9_4.3.s390x.rpm SHA-256: 440fb00678247050dcd842259cae42c2403b1d62b7ac674b75939842d3469c6c podman-debugsource-4.9.4-20.el9_4.3.s390x.rpm SHA-256: ba20bdf9e019cdc77f931d5dfeb382f38d64fd6afd11384c9206c186874427fe podman-docker-4.9.4-20.el9_4.3.noarch.rpm SHA-256: f7f5734b5d0d41ec34e34c099d6e69259a7d992a156d6a1f2f4de8c8b2b8e5cd podman-plugins-4.9.4-20.el9_4.3.s390x.rpm SHA-256: 9cc9989d0417871e461f80d1ac597de2fed89776f7ec7cc9f2b29bfac509363d podman-plugins-debuginfo-4.9.4-20.el9_4.3.s390x.rpm SHA-256: 5bdbd2889820393d7fc3101f53e379cf3757af0a924a41ed5b58f9feb3307aab podman-remote-4.9.4-20.el9_4.3.s390x.rpm SHA-256: 0ecdd38bfcb60a9551dcb4fcb9b269b680587a70798308576979c758bf048b0f podman-remote-debuginfo-4.9.4-20.el9_4.3.s390x.rpm SHA-256: 9d218b46d58a78f090599cac38a637e180bf2dd2c9344741f0cb5422fab24b6d podman-tests-4.9.4-20.el9_4.3.s390x.rpm SHA-256: ff547a3e7d62b121518bf8bfb9aa70312f12dece5474abcb4f07e5e1795b722b Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.4 SRPM podman-4.9.4-20.el9_4.3.src.rpm SHA-256: 3dd088345b2bc4e16fcddea83a413fb90524f5aea3d04c154d6b499e8707fdfd x86_64 podman-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: 6588a32e417656d1153557fa3f1c88cba248ea300117dab192e0158a8578066a podman-debuginfo-4.9.4-20.el9_4.3.x86_64.rpm SHA-256: a4e50e62284e62ef412d263bcdeae2993ffc159e12d32045a9a54b7965d04678 podman-debugsource-4.9.4-20.el9_4.3.x86_64.

Share this article