Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:20983 - Security Advisory
Issued:
2025-11-11
Updated:
2025-11-11

RHSA-2025:20983 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: podman security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for podman is now available for Red Hat Enterprise Linux 10.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.

Security Fix(es):

  • database/sql: Postgres Scan Race Condition (CVE-2025-47907)
  • podman: Podman kube play command may overwrite host files (CVE-2025-9566)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 10 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 10 s390x
  • Red Hat Enterprise Linux for Power, little endian 10 ppc64le
  • Red Hat Enterprise Linux for ARM 64 10 aarch64
  • Red Hat CodeReady Linux Builder for x86_64 10 x86_64
  • Red Hat CodeReady Linux Builder for Power, little endian 10 ppc64le
  • Red Hat CodeReady Linux Builder for ARM 64 10 aarch64
  • Red Hat CodeReady Linux Builder for IBM z Systems 10 s390x

Fixes

  • BZ - 2387083 - CVE-2025-47907 database/sql: Postgres Scan Race Condition
  • BZ - 2393152 - CVE-2025-9566 podman: Podman kube play command may overwrite host files
  • RHEL-110318 - Can not find network create and rm message from podman event when set --events-backend to journald - [RHEL 10.1] 0day
  • RHEL-111077 - Timeouts while pushing Sigstore logs to Rekor - [RHEL 10.1] 0day
  • RHEL-116090 - podman: create parent directories of mount targets with mode 0755 - [RHEL-10.1] 0day

CVEs

  • CVE-2025-9566
  • CVE-2025-47907

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 10

SRPM
podman-5.6.0-5.el10_1.src.rpm SHA-256: 11b2100fb79e770d42ef39c476cf2ebc87644b978c8ed33b64d2b0de24e8470c
x86_64
podman-5.6.0-5.el10_1.x86_64.rpm SHA-256: ecbddf9af2c39b793f2b34dfc418fb9f524bb5b81c619c7841f4bca9b36220f5
podman-debuginfo-5.6.0-5.el10_1.x86_64.rpm SHA-256: 259d45b7899d9cfc9b24e69960044f3f689f88456c3716f334dc677e9c69cf5f
podman-debugsource-5.6.0-5.el10_1.x86_64.rpm SHA-256: 9aabd1c6f87e52cc787faf1ca081721cfe063c42747822306c81fcabffbb0dc8
podman-docker-5.6.0-5.el10_1.noarch.rpm SHA-256: 4df58112023a32fab5019bf319702b4c93c67a3bbfa2f8a2238c78acd7d91c91
podman-remote-5.6.0-5.el10_1.x86_64.rpm SHA-256: affeb188b09a4dda389664e3aa0207f095e21e5a71e07ca5e40324450ebd0867
podman-remote-debuginfo-5.6.0-5.el10_1.x86_64.rpm SHA-256: 8b14e7efb08a50554d51f16062beb23d66c1a0d6143a68e5234d2ead00462c22
podman-tests-debuginfo-5.6.0-5.el10_1.x86_64.rpm SHA-256: e2dc6ff45b4837516fb2f5f84570e8e8c5bda1bb4c2cd7cd1593154a30fb3c33

Red Hat Enterprise Linux for IBM z Systems 10

SRPM
podman-5.6.0-5.el10_1.src.rpm SHA-256: 11b2100fb79e770d42ef39c476cf2ebc87644b978c8ed33b64d2b0de24e8470c
s390x
podman-5.6.0-5.el10_1.s390x.rpm SHA-256: b0c42e0e3c95d72520645b24a05ec2383b5f7896e74591bc89cf0f356a3a93d5
podman-debuginfo-5.6.0-5.el10_1.s390x.rpm SHA-256: 6f7411c9bcbb90d27df4bfe25a0710cd32aca992b1c6aba72c1c7123d964b4f6
podman-debugsource-5.6.0-5.el10_1.s390x.rpm SHA-256: 293e6b331727091a5688c9d8ff0638ec11b8e6d6a4af0c745832be2e4c957514
podman-docker-5.6.0-5.el10_1.noarch.rpm SHA-256: 4df58112023a32fab5019bf319702b4c93c67a3bbfa2f8a2238c78acd7d91c91
podman-remote-5.6.0-5.el10_1.s390x.rpm SHA-256: 422c8fad8a71694eb3bb580e7be0fcecced0631d1bd1a18e9b26435c9367136d
podman-remote-debuginfo-5.6.0-5.el10_1.s390x.rpm SHA-256: 01d7608177fbc7e0423256821fd74eff56063b9581f8f6a90ecdc9b8f64bcd4d
podman-tests-debuginfo-5.6.0-5.el10_1.s390x.rpm SHA-256: e931bca7617c376c08508488e6c359ac2df3620a8e1e1dcf7cd1db469040ebab

Red Hat Enterprise Linux for Power, little endian 10

SRPM
podman-5.6.0-5.el10_1.src.rpm SHA-256: 11b2100fb79e770d42ef39c476cf2ebc87644b978c8ed33b64d2b0de24e8470c
ppc64le
podman-5.6.0-5.el10_1.ppc64le.rpm SHA-256: 3c5a5910d7f959cbc4192929f96de20379cd7ec646dfcade49457fa3223d03f4
podman-debuginfo-5.6.0-5.el10_1.ppc64le.rpm SHA-256: f2b7cea5231e9c4c95c7efdf13ad19698a66796655a768d0e894262d70990ffd
podman-debugsource-5.6.0-5.el10_1.ppc64le.rpm SHA-256: 4c6a3ee953df74c2247484d9fb9a49dde90c44813b2d9d04c258361ad0dd32bf
podman-docker-5.6.0-5.el10_1.noarch.rpm SHA-256: 4df58112023a32fab5019bf319702b4c93c67a3bbfa2f8a2238c78acd7d91c91
podman-remote-5.6.0-5.el10_1.ppc64le.rpm SHA-256: 1201515be5f897938faf351dead138766897a4506388a273bce9b0b302640fe1
podman-remote-debuginfo-5.6.0-5.el10_1.ppc64le.rpm SHA-256: c19857148b3fd2534be21b81ab202f2335ec8542841b910932d9b064201d9dd1
podman-tests-debuginfo-5.6.0-5.el10_1.ppc64le.rpm SHA-256: 8535ebb8cd8e8908db6d0e106d9d32046d1d44cdccb6db9dfc8fa9ba00085d3a

Red Hat Enterprise Linux for ARM 64 10

SRPM
podman-5.6.0-5.el10_1.src.rpm SHA-256: 11b2100fb79e770d42ef39c476cf2ebc87644b978c8ed33b64d2b0de24e8470c
aarch64
podman-5.6.0-5.el10_1.aarch64.rpm SHA-256: 44d090130d192b2fc1ee180c575e13a541116a7760a6e8e1ecc2f2d48c1ad169
podman-debuginfo-5.6.0-5.el10_1.aarch64.rpm SHA-256: 4372c154195868624f4c582ef06e28559d96f33e397463df7c8b3a2f3ae5a621
podman-debugsource-5.6.0-5.el10_1.aarch64.rpm SHA-256: c99e85d07036e16090542edab1c31b2e8780bd1be36e068a673720ad4fd67070
podman-docker-5.6.0-5.el10_1.noarch.rpm SHA-256: 4df58112023a32fab5019bf319702b4c93c67a3bbfa2f8a2238c78acd7d91c91
podman-remote-5.6.0-5.el10_1.aarch64.rpm SHA-256: fc7fa76cea3f897a88dde300b819f42058632e4954895ea9f2aceeeb8fa66b7a
podman-remote-debuginfo-5.6.0-5.el10_1.aarch64.rpm SHA-256: 31fcdd825783e729a0d76d6edb4eb4747bb1742b9100f90e39c7f8f7359f8dc4
podman-tests-debuginfo-5.6.0-5.el10_1.aarch64.rpm SHA-256: 683c15a3187903788808d6f541955c08e279b672eb341f2ef7a29aea8bd764f4

Red Hat CodeReady Linux Builder for x86_64 10

SRPM
x86_64
podman-debuginfo-5.6.0-5.el10_1.x86_64.rpm SHA-256: 259d45b7899d9cfc9b24e69960044f3f689f88456c3716f334dc677e9c69cf5f
podman-debugsource-5.6.0-5.el10_1.x86_64.rpm SHA-256: 9aabd1c6f87e52cc787faf1ca081721cfe063c42747822306c81fcabffbb0dc8
podman-remote-debuginfo-5.6.0-5.el10_1.x86_64.rpm SHA-256: 8b14e7efb08a50554d51f16062beb23d66c1a0d6143a68e5234d2ead00462c22
podman-tests-5.6.0-5.el10_1.x86_64.rpm SHA-256: f6de1ca28af2fbae2326ee66a1f750479e90322d6c8aa856703c2690a8b6c24a
podman-tests-debuginfo-5.6.0-5.el10_1.x86_64.rpm SHA-256: e2dc6ff45b4837516fb2f5f84570e8e8c5bda1bb4c2cd7cd1593154a30fb3c33

Red Hat CodeReady Linux Builder for Power, little endian 10

SRPM
ppc64le
podman-debuginfo-5.6.0-5.el10_1.ppc64le.rpm SHA-256: f2b7cea5231e9c4c95c7efdf13ad19698a66796655a768d0e894262d70990ffd
podman-debugsource-5.6.0-5.el10_1.ppc64le.rpm SHA-256: 4c6a3ee953df74c2247484d9fb9a49dde90c44813b2d9d04c258361ad0dd32bf
podman-remote-debuginfo-5.6.0-5.el10_1.ppc64le.rpm SHA-256: c19857148b3fd2534be21b81ab202f2335ec8542841b910932d9b064201d9dd1
podman-tests-5.6.0-5.el10_1.ppc64le.rpm SHA-256: 7756ec0588d7a5a7e75b3a53176905710d4a8b9f8ad53775404eae4cfb5762c1
podman-tests-debuginfo-5.6.0-5.el10_1.ppc64le.rpm SHA-256: 8535ebb8cd8e8908db6d0e106d9d32046d1d44cdccb6db9dfc8fa9ba00085d3a

Red Hat CodeReady Linux Builder for ARM 64 10

SRPM
aarch64
podman-debuginfo-5.6.0-5.el10_1.aarch64.rpm SHA-256: 4372c154195868624f4c582ef06e28559d96f33e397463df7c8b3a2f3ae5a621
podman-debugsource-5.6.0-5.el10_1.aarch64.rpm SHA-256: c99e85d07036e16090542edab1c31b2e8780bd1be36e068a673720ad4fd67070
podman-remote-debuginfo-5.6.0-5.el10_1.aarch64.rpm SHA-256: 31fcdd825783e729a0d76d6edb4eb4747bb1742b9100f90e39c7f8f7359f8dc4
podman-tests-5.6.0-5.el10_1.aarch64.rpm SHA-256: 4485dcba3d364c3d6c4ff796fd8f291bdec76b4475b2f7074344687cdec900f9
podman-tests-debuginfo-5.6.0-5.el10_1.aarch64.rpm SHA-256: 683c15a3187903788808d6f541955c08e279b672eb341f2ef7a29aea8bd764f4

Red Hat CodeReady Linux Builder for IBM z Systems 10

SRPM
s390x
podman-debuginfo-5.6.0-5.el10_1.s390x.rpm SHA-256: 6f7411c9bcbb90d27df4bfe25a0710cd32aca992b1c6aba72c1c7123d964b4f6
podman-debugsource-5.6.0-5.el10_1.s390x.rpm SHA-256: 293e6b331727091a5688c9d8ff0638ec11b8e6d6a4af0c745832be2e4c957514
podman-remote-debuginfo-5.6.0-5.el10_1.s390x.rpm SHA-256: 01d7608177fbc7e0423256821fd74eff56063b9581f8f6a90ecdc9b8f64bcd4d
podman-tests-5.6.0-5.el10_1.s390x.rpm SHA-256: 59b6c385d5a9f773aa75a56d9c28b8c82ea7722836a802515237e13616a6fafb
podman-tests-debuginfo-5.6.0-5.el10_1.s390x.rpm SHA-256: e931bca7617c376c08508488e6c359ac2df3620a8e1e1dcf7cd1db469040ebab

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility