Synopsis
Important: containernetworking-plugins security update
Type/Severity
Security Advisory: Important
Red Hat Lightspeed patch analysis
Identify and remediate systems affected by this advisory.
View affected systems
Topic
An update for containernetworking-plugins is now available for Red Hat Enterprise Linux 9.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
Description
The Container Network Interface (CNI) project consists of a specification and libraries for writing plug-ins for configuring network interfaces in Linux containers, along with a number of supported plug-ins. CNI concerns itself only with network connectivity of containers and removing allocated resources when the container is deleted.
Security Fix(es):
- crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate (CVE-2025-61729)
- golang: net/url: Memory exhaustion in query parameter parsing in net/url (CVE-2025-61726)
- crypto/tls: Unexpected session resumption in crypto/tls (CVE-2025-68121)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Products
-
Red Hat Enterprise Linux for x86_64 9 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.8 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 9 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.8 s390x
-
Red Hat Enterprise Linux for Power, little endian 9 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.8 ppc64le
-
Red Hat Enterprise Linux for ARM 64 9 aarch64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.8 aarch64
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.8 ppc64le
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.8 x86_64
-
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.8 aarch64
-
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.8 s390x
-
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.8 x86_64
-
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.8 aarch64
-
Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.8 ppc64le
-
Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.8 s390x
Fixes
-
BZ - 2418462
- CVE-2025-61729 crypto/x509: golang: Denial of Service due to excessive resource consumption via crafted certificate
-
BZ - 2434432
- CVE-2025-61726 golang: net/url: Memory exhaustion in query parameter parsing in net/url
-
BZ - 2437111
- CVE-2025-68121 crypto/tls: Unexpected session resumption in crypto/tls
Note:
More recent versions of these packages may be available.
Click a package name for more details.
Red Hat Enterprise Linux for x86_64 9
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| x86_64 |
|
containernetworking-plugins-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 5b3ed0854bba371f2db51240f1f8b9a6a5477c9944d52ce1a06c511ddda80e3d |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 23f9619640bc1d1c6a43f96e0a73658dccca8d60201eaa53cdecc7e774243c6f |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 527cb0e3aaa29a090de881ef206abda481e0f4d9566783ed36d566412b1e160d |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| x86_64 |
|
containernetworking-plugins-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 5b3ed0854bba371f2db51240f1f8b9a6a5477c9944d52ce1a06c511ddda80e3d |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 23f9619640bc1d1c6a43f96e0a73658dccca8d60201eaa53cdecc7e774243c6f |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 527cb0e3aaa29a090de881ef206abda481e0f4d9566783ed36d566412b1e160d |
Red Hat Enterprise Linux for IBM z Systems 9
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| s390x |
|
containernetworking-plugins-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: 24351791ffe51ae18fb9b32a9ee52d84a8f6e7030f4c31fe601aed7e7dd973c0 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: b6ee0f7f17bd9e252c54405f8f72ec7e1efb4022f303787727f86d2124e1dc74 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: 1c3fd4422409c7d647ced315700b73adc717e328b89baee806645336e601a5de |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| s390x |
|
containernetworking-plugins-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: 24351791ffe51ae18fb9b32a9ee52d84a8f6e7030f4c31fe601aed7e7dd973c0 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: b6ee0f7f17bd9e252c54405f8f72ec7e1efb4022f303787727f86d2124e1dc74 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: 1c3fd4422409c7d647ced315700b73adc717e328b89baee806645336e601a5de |
Red Hat Enterprise Linux for Power, little endian 9
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| ppc64le |
|
containernetworking-plugins-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: b53705773fb97fefa3298199f5a86ad0a22f7d4099eef50d5f095eee10023e45 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: 63a9ac04eaad23edb98ee22a1e05ec899e0b62413885e4037819dbd69c04bcb6 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: 933547bcfe7875bf7bfbf6a783b723eaa86d577af18d74b4366fa50537a6dfb5 |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| ppc64le |
|
containernetworking-plugins-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: b53705773fb97fefa3298199f5a86ad0a22f7d4099eef50d5f095eee10023e45 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: 63a9ac04eaad23edb98ee22a1e05ec899e0b62413885e4037819dbd69c04bcb6 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: 933547bcfe7875bf7bfbf6a783b723eaa86d577af18d74b4366fa50537a6dfb5 |
Red Hat Enterprise Linux for ARM 64 9
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| aarch64 |
|
containernetworking-plugins-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: 214d7e01cfae7a1d2e9d325df5f8a1c86e05aeaab287ff8f05f8fc488fca67e6 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: be0911b7b96dd72d03406e843ad512f2162ed3078272317e059aebeda74e1403 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: 86e15d2e55d63a6e2f57567fdb16044ed5f2bd1a8e7c8cef4d3a3107449c37b8 |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| aarch64 |
|
containernetworking-plugins-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: 214d7e01cfae7a1d2e9d325df5f8a1c86e05aeaab287ff8f05f8fc488fca67e6 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: be0911b7b96dd72d03406e843ad512f2162ed3078272317e059aebeda74e1403 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: 86e15d2e55d63a6e2f57567fdb16044ed5f2bd1a8e7c8cef4d3a3107449c37b8 |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| ppc64le |
|
containernetworking-plugins-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: b53705773fb97fefa3298199f5a86ad0a22f7d4099eef50d5f095eee10023e45 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: 63a9ac04eaad23edb98ee22a1e05ec899e0b62413885e4037819dbd69c04bcb6 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: 933547bcfe7875bf7bfbf6a783b723eaa86d577af18d74b4366fa50537a6dfb5 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| x86_64 |
|
containernetworking-plugins-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 5b3ed0854bba371f2db51240f1f8b9a6a5477c9944d52ce1a06c511ddda80e3d |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 23f9619640bc1d1c6a43f96e0a73658dccca8d60201eaa53cdecc7e774243c6f |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 527cb0e3aaa29a090de881ef206abda481e0f4d9566783ed36d566412b1e160d |
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| aarch64 |
|
containernetworking-plugins-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: 214d7e01cfae7a1d2e9d325df5f8a1c86e05aeaab287ff8f05f8fc488fca67e6 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: be0911b7b96dd72d03406e843ad512f2162ed3078272317e059aebeda74e1403 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: 86e15d2e55d63a6e2f57567fdb16044ed5f2bd1a8e7c8cef4d3a3107449c37b8 |
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| s390x |
|
containernetworking-plugins-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: 24351791ffe51ae18fb9b32a9ee52d84a8f6e7030f4c31fe601aed7e7dd973c0 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: b6ee0f7f17bd9e252c54405f8f72ec7e1efb4022f303787727f86d2124e1dc74 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: 1c3fd4422409c7d647ced315700b73adc717e328b89baee806645336e601a5de |
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| x86_64 |
|
containernetworking-plugins-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 5b3ed0854bba371f2db51240f1f8b9a6a5477c9944d52ce1a06c511ddda80e3d |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 23f9619640bc1d1c6a43f96e0a73658dccca8d60201eaa53cdecc7e774243c6f |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.x86_64.rpm
|
SHA-256: 527cb0e3aaa29a090de881ef206abda481e0f4d9566783ed36d566412b1e160d |
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| aarch64 |
|
containernetworking-plugins-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: 214d7e01cfae7a1d2e9d325df5f8a1c86e05aeaab287ff8f05f8fc488fca67e6 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: be0911b7b96dd72d03406e843ad512f2162ed3078272317e059aebeda74e1403 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.aarch64.rpm
|
SHA-256: 86e15d2e55d63a6e2f57567fdb16044ed5f2bd1a8e7c8cef4d3a3107449c37b8 |
Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| ppc64le |
|
containernetworking-plugins-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: b53705773fb97fefa3298199f5a86ad0a22f7d4099eef50d5f095eee10023e45 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: 63a9ac04eaad23edb98ee22a1e05ec899e0b62413885e4037819dbd69c04bcb6 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.ppc64le.rpm
|
SHA-256: 933547bcfe7875bf7bfbf6a783b723eaa86d577af18d74b4366fa50537a6dfb5 |
Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.8
| SRPM |
|
containernetworking-plugins-1.7.1-3.el9_7.src.rpm
|
SHA-256: 2e3e826b4a7aacf31d9aa45d9cf72b31c21492e3c50f20d712ef2a0c72f0bf62 |
| s390x |
|
containernetworking-plugins-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: 24351791ffe51ae18fb9b32a9ee52d84a8f6e7030f4c31fe601aed7e7dd973c0 |
|
containernetworking-plugins-debuginfo-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: b6ee0f7f17bd9e252c54405f8f72ec7e1efb4022f303787727f86d2124e1dc74 |
|
containernetworking-plugins-debugsource-1.7.1-3.el9_7.s390x.rpm
|
SHA-256: 1c3fd4422409c7d647ced315700b73adc717e328b89baee806645336e601a5de |