Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Security Measurement
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Insights
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Insights
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2025:9064 - Security Advisory
Issued:
2025-06-16
Updated:
2025-06-16

RHSA-2025:9064 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Moderate: podman security update

Type/Severity

Security Advisory: Moderate

Red Hat Insights patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for podman is now available for Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions.

Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.

Security Fix(es):

  • net/http: Request smuggling due to acceptance of invalid chunked data in net/http (CVE-2025-22871)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0 ppc64le
  • Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0 x86_64
  • Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0 aarch64
  • Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0 s390x

Fixes

  • BZ - 2358493 - CVE-2025-22871 net/http: Request smuggling due to acceptance of invalid chunked data in net/http

CVEs

  • CVE-2025-22871

References

  • https://access.redhat.com/security/updates/classification/#moderate
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.0

SRPM
podman-4.2.0-6.el9_0.4.src.rpm SHA-256: 275bf5f582606e551f7340465e9091b1a3c3492ee91372d109117b953911d66f
ppc64le
podman-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: 2fc2008f4a5a41506b6aca0d86ba7c3ef4ba040f5599274e858bd44a02564fd1
podman-catatonit-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: f9038b229923c7247686ecd05dc3198cb8f82e49f415fd99fdd99c9057bf637b
podman-catatonit-debuginfo-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: 50d549979cb8b2ec2a28d834eee2958fce952aab6a7f3cbd7360c0c167b805a0
podman-debuginfo-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: 6ee80ce394815019c8a0b37256f617c22bf0c1352a913cd97dc9090283888eec
podman-debugsource-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: 1bc80edadb6330c84dd0231968c686d7b84453dbb84e142bd0c9cfa92ad66b2e
podman-docker-4.2.0-6.el9_0.4.noarch.rpm SHA-256: 0a6f93e9cf2caa0ad0e45bc67ddbde03332a6fe6f13966b98926652aa73318d5
podman-gvproxy-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: 721059173c5ef67d923cc35761566861eb04b3fb1d903799a7032cbef432d64f
podman-gvproxy-debuginfo-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: 31e5d51334578551151ce99cba923db472c7fc279bae8069e4b331c83e36ad26
podman-plugins-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: 76aff9eb8c87d228926d8f2f447baa38ecdf4f05f18b0b63f031f5040fc37790
podman-plugins-debuginfo-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: aecb5b809de1db76ac08b460d6f3b8d159c7aed667cefdd4daf9e306b374a425
podman-remote-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: e58d0c24a87c6f74369127b2df10dd7677b8e90c5ac1bdbba1be3b1bd4f96f15
podman-remote-debuginfo-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: b512830ade6248b9ff896ba59933c6e06539f58f06bb4cc74765f5d44ee43f7d
podman-tests-4.2.0-6.el9_0.4.ppc64le.rpm SHA-256: 32f9f1b3516d717b7cd4bfc09d7372e5af45a44688368026338ed4d11833856e

Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.0

SRPM
podman-4.2.0-6.el9_0.4.src.rpm SHA-256: 275bf5f582606e551f7340465e9091b1a3c3492ee91372d109117b953911d66f
x86_64
podman-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: 56f7f8c35e3433b424d09195ef1dba8461e3bd62015b9b22b5daf53649e7a2ba
podman-catatonit-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: 2aada6f539724a85ebfc3a3672416969b5fab8a81826718bb2071e2af3a89c93
podman-catatonit-debuginfo-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: 82f520c3d2c171be8229c8e2c383f27a61626d527cea428dcc499ed128dde477
podman-debuginfo-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: 88e5fa8210313031cd14df92fbb8de2b3107836a79e88357afaedefca0c1c3e0
podman-debugsource-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: 1d243d999669e3bb7e1e0d05fb0ca3bde1cd1629c9c86afb2c57e4b559819198
podman-docker-4.2.0-6.el9_0.4.noarch.rpm SHA-256: 0a6f93e9cf2caa0ad0e45bc67ddbde03332a6fe6f13966b98926652aa73318d5
podman-gvproxy-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: d9d83b1dac0b7a5d7c088210f195a0c072c9ded4bf795fd827763f9917d249f4
podman-gvproxy-debuginfo-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: fb82408a7f6761b4d70aa9ae6038e3537fe4ab2274a24f10487e6dc97d7a2585
podman-plugins-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: 2ff9fed13add2d40638c0ace440b1584cf70fa5f63087bef79196036a521c00f
podman-plugins-debuginfo-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: 5fb2b329784efe0826963d2cc446888d00917bf7bad6615e190c3011b78dfdee
podman-remote-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: 82d6154783ad41c3dd5e022e7c614c35ca3c119de9a55612d578864075f9af39
podman-remote-debuginfo-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: a1d00d4454444d59ae8a955bcfb3db60aa95bb017590209f3616da65696ea719
podman-tests-4.2.0-6.el9_0.4.x86_64.rpm SHA-256: 1d50f651969d1a94d0206b1fb0ec8882704d3c13a6092c6d47cfdfa3fc20eb30

Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.0

SRPM
podman-4.2.0-6.el9_0.4.src.rpm SHA-256: 275bf5f582606e551f7340465e9091b1a3c3492ee91372d109117b953911d66f
aarch64
podman-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: 3964cfec693c3250c5937c7584aed679b66aa57b182b45a8c93953257ef459d8
podman-catatonit-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: 3c88e8c2904b8a3357090322b409d61581e513e405bd493a68ae7acfbdbffe13
podman-catatonit-debuginfo-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: f87f98831ab6a095982ce84be5e5bab865f891388cca1782c02c7f0ebad6d34d
podman-debuginfo-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: 744f509655badf2d31de5707647211a0fa5a077c1981d288859ffd9210d63e2d
podman-debugsource-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: 763b6979e2fe4a14436073b43ddf9021458d7434e02768dea9388616fc148e44
podman-docker-4.2.0-6.el9_0.4.noarch.rpm SHA-256: 0a6f93e9cf2caa0ad0e45bc67ddbde03332a6fe6f13966b98926652aa73318d5
podman-gvproxy-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: 13c3ca6cdfcc8d543eaeea11531d94a18251438b75f5f94377bf7e1606c227f8
podman-gvproxy-debuginfo-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: d9019c9f408dadec5b3fea4f57de0cd248db3932d02947cfde71800b6f06257a
podman-plugins-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: e26e522b98c5ff09776ee579ce1a28e7d6ab2a68a2a5580a391022f710abbdef
podman-plugins-debuginfo-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: 697f6eb7d7ea2b56ede6fb70419f1c4eb588385535aec537ffc69c2fd783892a
podman-remote-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: 824f524be6cc5ec7508cf729566e6558219a169f273d791c36b1535ea1e07776
podman-remote-debuginfo-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: aeabc1d8669f0e52edc248131ec47e15723b267085b992eb1ca94aa3f5c5008a
podman-tests-4.2.0-6.el9_0.4.aarch64.rpm SHA-256: 9fb657208fb8b05da503e01543108759a0ab85c9e1970869150f35eb044a4c3e

Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.0

SRPM
podman-4.2.0-6.el9_0.4.src.rpm SHA-256: 275bf5f582606e551f7340465e9091b1a3c3492ee91372d109117b953911d66f
s390x
podman-4.2.0-6.el9_0.4.s390x.rpm SHA-256: eaafcbf54b54f585f7f94d209f223359c377ed24b9f28bf12c0b51c146370bbd
podman-catatonit-4.2.0-6.el9_0.4.s390x.rpm SHA-256: 208b9863a70f6fc6109a150e89d9f9f331e14a8dd4f6ced62a4045aaa67e3800
podman-catatonit-debuginfo-4.2.0-6.el9_0.4.s390x.rpm SHA-256: 48872f183e4af0ba8b28bcf455ec326fbfad060c93e18cc06b6409954d08f031
podman-debuginfo-4.2.0-6.el9_0.4.s390x.rpm SHA-256: 0757423280e2db7c344e6d06049e5531b32a69f863d06d0653d8dde99f2ae372
podman-debugsource-4.2.0-6.el9_0.4.s390x.rpm SHA-256: 5155d8cfe4963aa41be004e3a118150b50145009bccdb81d6d4c032764892c44
podman-docker-4.2.0-6.el9_0.4.noarch.rpm SHA-256: 0a6f93e9cf2caa0ad0e45bc67ddbde03332a6fe6f13966b98926652aa73318d5
podman-gvproxy-4.2.0-6.el9_0.4.s390x.rpm SHA-256: e280b46d9e3571057b200a972bb74393ae0b93072a85aefb0f45de7f911416c2
podman-gvproxy-debuginfo-4.2.0-6.el9_0.4.s390x.rpm SHA-256: 207eec62fe7bb712e26d2173036f20c9eb30e7a87c4d80bdb5fcf513f83d4e98
podman-plugins-4.2.0-6.el9_0.4.s390x.rpm SHA-256: 0fa8beae319d05402864a43531c77ad616743b1f9b1e934b0d258a7dc08d5e14
podman-plugins-debuginfo-4.2.0-6.el9_0.4.s390x.rpm SHA-256: 06368854887f6597c5b141a4570e24c1a500db7df5e3fdbb42ace6c4515562db
podman-remote-4.2.0-6.el9_0.4.s390x.rpm SHA-256: c9dd7ae9033a41443b3511b1e86ae7335f7eb142a1a67301360dd15c5060e423
podman-remote-debuginfo-4.2.0-6.el9_0.4.s390x.rpm SHA-256: fdb7e1c1bf7a61a9c00590f03268f5555d47f90ebc7bdfab0e8830fd0e3b7168
podman-tests-4.2.0-6.el9_0.4.s390x.rpm SHA-256: 1a526e614099709e326c6896cd895b4fe5a8d441e09ce159aa1fb91fb89cec17

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2025 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility