Linuxsecurity SUSE Linux Podman Vulnerabilities Lead to Denial of Service Risks
Article Content
- •Multiple denial of service vulnerabilities found in SUSE Linux Podman.
- •Critical CVEs include CVE-2026-34986 and CVE-2026-39827.
- •Patches released on July 3, 2026; users must update to secure their systems.
Recent updates for SUSE Linux Podman have addressed multiple denial of service vulnerabilities. Key issues include CVE-2026-34986, which involves crafted JWE input that can cause DoS, and CVE-2026-39827, which leads to a memory leak when rejecting channels. Other vulnerabilities, such as CVE-2026-39828 and CVE-2026-39829, allow for certificate restriction bypass and DoS through pathological RSA/DSA parameters. These vulnerabilities affect systems using Podman, particularly versions of SUSE Linux and openSUSE. The vulnerabilities were published between April and May 2026, with patches released on July 3, 2026. Users are advised to update their systems to mitigate these risks.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (5)
Following this threat?
Track CVE-2024-6104 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…