[CLSA-2026:1784307446] podman: Fix of CVE-2026-42508
Type:
security
Severity:
Moderate
Release date:
2026-07-17 16:57:48 UTC
Description:
- CVE-2026-42508: fix revoked SignatureKey not checked for revocation in vendored golang.org/x/crypto/ssh/knownhosts
CVEs fixed:
Updated packages:
  • podman-5.4.0-13.el9_6.tuxcare.els12.x86_64.rpm
    sha:1f69067e1e3e2b2f9c8a15f149522eed4c22b7335b39593008d11bb37ca65a58
  • podman-docker-5.4.0-13.el9_6.tuxcare.els12.noarch.rpm
    sha:1f88e0af2eb662f1eca257e5bd19de5479acab172d7b415fcfacd5db90e9ce56
  • podman-plugins-5.4.0-13.el9_6.tuxcare.els12.x86_64.rpm
    sha:c4b42ef2bd7961522fae91586e7e9cea59d66c0fb4c2bf0d020382563ef9864a
  • podman-remote-5.4.0-13.el9_6.tuxcare.els12.x86_64.rpm
    sha:d42cf77052629d1664442e6ec5b6eb3f8d3b3bc38b41c8ab4dfe5220dee96e47
  • podman-tests-5.4.0-13.el9_6.tuxcare.els12.x86_64.rpm
    sha:9002142fb67bf1e67bcbdd0513c6ce00a71fc73ec8d8060d181f2f59b1c9685c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.