Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:21702 - Security Advisory
Issued:
2025-11-18
Updated:
2025-11-18

RHSA-2025:21702 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: podman security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for podman is now available for Red Hat Enterprise Linux 9.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.

Security Fix(es):

  • runc: container escape and denial of service due to arbitrary write gadgets and procfs write redirects (CVE-2025-52881)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 9 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 9 s390x
  • Red Hat Enterprise Linux for Power, little endian 9 ppc64le
  • Red Hat Enterprise Linux for ARM 64 9 aarch64

Fixes

  • BZ - 2404715 - CVE-2025-52881 runc: opencontainers/selinux: container escape and denial of service due to arbitrary write gadgets and procfs write redirects

CVEs

  • CVE-2025-52881

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 9

SRPM
podman-5.6.0-7.el9_7.src.rpm SHA-256: b0a05c62d4bcafc9bb266479f75073d4806df10f6171824b0a94edb64d6526d9
x86_64
podman-5.6.0-7.el9_7.x86_64.rpm SHA-256: 21bf80147607e81a75cb36362fefa7572217582c4bf3df5a123f51312e482031
podman-debuginfo-5.6.0-7.el9_7.x86_64.rpm SHA-256: b3b833eb7b04bb391c5337b045d7da4feedd58bf5aace86c270cc84131bbbd34
podman-debugsource-5.6.0-7.el9_7.x86_64.rpm SHA-256: 88b7c449cbef36ab75e5abdb2c5037d44e1e7eda82a1d56a1605f767eaf56799
podman-docker-5.6.0-7.el9_7.noarch.rpm SHA-256: 4475bb68d6210c82c3dc495dc1ef60432d2fd4c183d662310e47b660660f79e7
podman-plugins-5.6.0-7.el9_7.x86_64.rpm SHA-256: 9d272f86c1e1df911730a9d4e417afe94f48814ed73cd5a522972335c281d10e
podman-plugins-debuginfo-5.6.0-7.el9_7.x86_64.rpm SHA-256: c9281d65c59be4add0e89d9f3204ccef82ba77f36d69bd73f9c07cbd42c0c2a4
podman-remote-5.6.0-7.el9_7.x86_64.rpm SHA-256: f1d3cc34e0701780c278c2179b95f683296a16a8b63c68f2b18d30882ead1750
podman-remote-debuginfo-5.6.0-7.el9_7.x86_64.rpm SHA-256: 05fd2c2175b24700b59b0b239227439e1b73b7b76b25801543d0e005a6091c1f
podman-tests-5.6.0-7.el9_7.x86_64.rpm SHA-256: 7abce6c2521d072c780bab7b42b31def4fda5cca89e3799d6c1dd8eee97352ca
podman-tests-debuginfo-5.6.0-7.el9_7.x86_64.rpm SHA-256: 77b781a95f9ce259822b4a88d06f2dd747facae76737ab4f9d141dcb5c05fb0f

Red Hat Enterprise Linux for IBM z Systems 9

SRPM
podman-5.6.0-7.el9_7.src.rpm SHA-256: b0a05c62d4bcafc9bb266479f75073d4806df10f6171824b0a94edb64d6526d9
s390x
podman-5.6.0-7.el9_7.s390x.rpm SHA-256: df4718f7d32981baac87bd6ed641065c54efad94b30528be53df0723495fe137
podman-debuginfo-5.6.0-7.el9_7.s390x.rpm SHA-256: 2027a028950f301af5e737d90a185e39cecdfa2751270605f4d18a75cb2c64b1
podman-debugsource-5.6.0-7.el9_7.s390x.rpm SHA-256: c9b96272379cebe252e11b8b5ce1bd94a1c05aadbe1498b49715724bf1c7fb23
podman-docker-5.6.0-7.el9_7.noarch.rpm SHA-256: 4475bb68d6210c82c3dc495dc1ef60432d2fd4c183d662310e47b660660f79e7
podman-plugins-5.6.0-7.el9_7.s390x.rpm SHA-256: 8930226b3a62f28dfb876790327a6a92930641cf7dff2b1e5ae09ebd894e6612
podman-plugins-debuginfo-5.6.0-7.el9_7.s390x.rpm SHA-256: e285877513d558d43433b5ce79cb3dde69c7ea2e267c17afc2b159e29f839780
podman-remote-5.6.0-7.el9_7.s390x.rpm SHA-256: 415a52d41586e5b7da28f911fb057969ae42c4e17eed8c1c6f1eeadb55d8383c
podman-remote-debuginfo-5.6.0-7.el9_7.s390x.rpm SHA-256: 6ef5f7f5f07d260410640ff8a6bf452c6cd37656e7d5731da01b0f7e208df395
podman-tests-5.6.0-7.el9_7.s390x.rpm SHA-256: 96be8b75e433f040a2d8a54ae72b15969bb9a8ebdb181d77045986d8e9ca1b6c
podman-tests-debuginfo-5.6.0-7.el9_7.s390x.rpm SHA-256: 092e6f0b364357d844e566595a0182dadca59729fab9a7ebba41221fc714c102

Red Hat Enterprise Linux for Power, little endian 9

SRPM
podman-5.6.0-7.el9_7.src.rpm SHA-256: b0a05c62d4bcafc9bb266479f75073d4806df10f6171824b0a94edb64d6526d9
ppc64le
podman-5.6.0-7.el9_7.ppc64le.rpm SHA-256: 378fd76a1271b14c33f970c373ddc57b809f4033eece8bdef9dec63dc5befbcb
podman-debuginfo-5.6.0-7.el9_7.ppc64le.rpm SHA-256: 2bb149a5196309ee78eeb61802643fff9915f24d1df66cd1840317ed8b4ad32d
podman-debugsource-5.6.0-7.el9_7.ppc64le.rpm SHA-256: 0e5348c50b95b76479dee14d0f39899bbb9553a285cb73a02a238b6b29f41a52
podman-docker-5.6.0-7.el9_7.noarch.rpm SHA-256: 4475bb68d6210c82c3dc495dc1ef60432d2fd4c183d662310e47b660660f79e7
podman-plugins-5.6.0-7.el9_7.ppc64le.rpm SHA-256: efdd470f52cc5bd4e4745c71b98bae0827e3c4c4861946f21d4b87c541c7e861
podman-plugins-debuginfo-5.6.0-7.el9_7.ppc64le.rpm SHA-256: 596cb4823f2f0a5d4dbade51a1b029230c741a3c9a763f32ce4da3cdc73aac53
podman-remote-5.6.0-7.el9_7.ppc64le.rpm SHA-256: e4512cc058633737964dbc13815913cfee4bac443f2720a1abfab5aa7ecbcb35
podman-remote-debuginfo-5.6.0-7.el9_7.ppc64le.rpm SHA-256: ef0b0f529e36218a6354b409291f951c82a02eef7d3ba4bad9be8d68b84be9cd
podman-tests-5.6.0-7.el9_7.ppc64le.rpm SHA-256: 3314b33539d67a2064134645edc4c3171ec0b26039baa04452e821d05db5f46a
podman-tests-debuginfo-5.6.0-7.el9_7.ppc64le.rpm SHA-256: e8219e91c38c82110e975438b4e90e65eb6e71303d4f44b4fedc25c61133d53f

Red Hat Enterprise Linux for ARM 64 9

SRPM
podman-5.6.0-7.el9_7.src.rpm SHA-256: b0a05c62d4bcafc9bb266479f75073d4806df10f6171824b0a94edb64d6526d9
aarch64
podman-5.6.0-7.el9_7.aarch64.rpm SHA-256: 6c03a6a8812dde8d70da716ced30cac39e4d0ccfcbdcc94c019bca86ea04eebf
podman-debuginfo-5.6.0-7.el9_7.aarch64.rpm SHA-256: f8d33847c067235ffcd8393d4a860a9f4798571da9f3dcc0a135d01626d36d62
podman-debugsource-5.6.0-7.el9_7.aarch64.rpm SHA-256: fc3635a85bd3a01dfe955a97a6d74beb76cf719686b0f8bbf968b14c61cea638
podman-docker-5.6.0-7.el9_7.noarch.rpm SHA-256: 4475bb68d6210c82c3dc495dc1ef60432d2fd4c183d662310e47b660660f79e7
podman-plugins-5.6.0-7.el9_7.aarch64.rpm SHA-256: 487553484a935d1a2444b7832f6a206302b93da83e8b9ec47fca70a7a5b10bcb
podman-plugins-debuginfo-5.6.0-7.el9_7.aarch64.rpm SHA-256: ccd9a862a2e94339918f1a8057d07167946e9904685dda08f3554d872f24830a
podman-remote-5.6.0-7.el9_7.aarch64.rpm SHA-256: 43483a4d7cf1147f7a3b058fea8c1df6f924136802162ccc74c0ed2c5832f40f
podman-remote-debuginfo-5.6.0-7.el9_7.aarch64.rpm SHA-256: de3d969ed080ee95fe76f30f8f645ee837450738a73d5670d31ea4ce88afe825
podman-tests-5.6.0-7.el9_7.aarch64.rpm SHA-256: 939a8136bb045fc30ac98f04e0bb6539b49e748b993fec8556a683bc7b98727b
podman-tests-debuginfo-5.6.0-7.el9_7.aarch64.rpm SHA-256: 9499abef840431efdf169aa72f9bd3101565accb14117e026bb4c1a3768fce10

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility