[El-errata] ELSA-2024-8039 Important: Oracle Linux 9 podman security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Tue Oct 15 11:35:10 UTC 2024


Oracle Linux Security Advisory ELSA-2024-8039

http://linux.oracle.com/errata/ELSA-2024-8039.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
podman-4.9.4-13.0.1.el9_4.x86_64.rpm
podman-docker-4.9.4-13.0.1.el9_4.noarch.rpm
podman-plugins-4.9.4-13.0.1.el9_4.x86_64.rpm
podman-remote-4.9.4-13.0.1.el9_4.x86_64.rpm
podman-tests-4.9.4-13.0.1.el9_4.x86_64.rpm

aarch64:
podman-4.9.4-13.0.1.el9_4.aarch64.rpm
podman-docker-4.9.4-13.0.1.el9_4.noarch.rpm
podman-plugins-4.9.4-13.0.1.el9_4.aarch64.rpm
podman-remote-4.9.4-13.0.1.el9_4.aarch64.rpm
podman-tests-4.9.4-13.0.1.el9_4.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//podman-4.9.4-13.0.1.el9_4.src.rpm

Related CVEs:

CVE-2024-9341
CVE-2024-34155
CVE-2024-34156
CVE-2024-34158




Description of changes:

[4.9.4-13.0.1]
- Fixes issue of podman execvp error while using podmansh [Orabug: 36073625]
- Improved saving remote build context to tarfile in Podman daemon [Orabug: 36495655]
- Add devices on container startup, not on creation
- Backport fast gzip for compression [Orabug: 36420418]
- overlay: Put should ignore ENINVAL for Unmount [Orabug: 36234694]
- Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117404]

[4:4.9.4-13]
- update to the latest content of https://github.com/containers/podman/tree/v4.9-rhel
  (https://github.com/containers/podman/commit/6cf9920)
- Resolves: RHEL-60964

[4:4.9.4-12]
- rebuild to address CVE-2024-34155 CVE-2024-34156 CVE-2024-34158
- Resolves: RHEL-57980 RHEL-57950 RHEL-58203

[4:4.9.4-11]
- update to the latest content of https://github.com/containers/podman/tree/v4.9-rhel
  (https://github.com/containers/podman/commit/e3221b5)
- Resolves: RHEL-56327 RHEL-50231




More information about the El-errata mailing list