SUSE-SU-2026:21291-1

Source
https://www.suse.com/support/update/announcement/2026/suse-su-202621291-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:21291-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2026:21291-1
Upstream
CVE (5)
Related
Published
2026-04-23T12:23:33Z
Modified
2026-04-28T18:24:54Z
Summary
Security update for podman
Details

This update for podman fixes the following issues:

  • CVE-2025-31133,CVE-2025-52565,CVE-2025-52881: Container breakouts by bypassing runc's restrictions for writing to arbitrary /proc files (bsc#1252376).
  • CVE-2025-47913: golang.org/x/crypto/ssh/agent: client process termination when receiving an unexpected message type in response to a key listing or signing request (bsc#1253542).
  • CVE-2025-47914: golang.org/x/crypto/ssh/agent: non validated message size can cause a panic due to an out of bounds read (bsc#1253993).
References

Affected packages