Podman — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
9
occurrences
First Seen
November 21, 2025
Last Seen
June 26, 2026

Podman is a technology platform tracked across 4 threat clusters and 9 intelligence report mentions on ThreatCluster. First observed November 21, 2025; most recent activity June 26, 2026.

Related Threat Clusters

  • Critical DoS Vulnerabilities in Fedora 43 Podman, Buildah, and Skopeo

    On April 6, 2026, CVE-2026-34986 was published, revealing a critical denial of service vulnerability affecting Fedora 43's Podman, Buildah, and Skopeo tools. This vulnerability allows attackers to exploit crafted JSON…

    4 articles · Updated April 17, 2026
  • Oracle Linux 9 Security Updates Address Multiple Vulnerabilities

    Oracle Linux 9 has released significant security updates addressing vulnerabilities in Go and Podman. The updates include a new version of Go (1.26.3) that resolves several CVEs, including CVE-2026-33811 and…

    3 articles · Updated June 26, 2026
  • Multiple CVEs Affecting Podman and Buildah Identified

    Two vulnerabilities affecting Podman and Buildah have been reported. CVE-2024-9407 involves improper input validation in the bind-propagation option of Dockerfile run, while CVE-2024-11218 allows for container breakout…

    2 articles · Updated February 21, 2026
  • SUSE OpenSSL Update Addresses Out-of-Bounds Vulnerability CVE-2025-9230

    SUSE has released updates for OpenSSL addressing an important out-of-bounds read and write vulnerability identified as CVE-2025-9230. This affects both openssl-1_0_0 and openssl-3-livepatches, with specific patch…

    25 articles · Updated November 18, 2025

Recent Intelligence Reports

  • Oracle Linux 9 podman Important Security Fix ELSA-2026 — Linuxsecurity · June 26, 2026
  • Fedora 43 Podman CVE-2026 — Linuxsecurity · April 17, 2026
  • Fedora 43 Buildah Critical Denial Of Service Vuln FEDORA-2026 — Linuxsecurity · April 17, 2026
  • CVE-2024-9407 Buildah: podman: improper input validation in bind-propagation option of dockerfile run - — Api.Msrc.Microsoft · February 21, 2026
  • CVE-2024-11218 Podman: buildah: container breakout by using --jobs=2 and a race condition when building a malicious containerfile — Api.Msrc.Microsoft · February 18, 2026
  • SUSE: Podman Important CVE-2025-47913 DoS Advisory 2025:4156 — Linuxsecurity · November 21, 2025
  • openSUSE: Podman Important CVE-2025-47913 DoS Advisory SUSE-SU-2025:4156 — Linuxsecurity · November 21, 2025
  • openSUSE: podman Important DoS Issue CVE-2025-47913 Advisory 2025:4157 — Linuxsecurity · November 21, 2025

CVSS v3.1 Breakdown