RHSA-2025:10549: Important: podman security update
Important: podman security update
Other sources
The podman tool manages pods, container images, and containers. It is part of the libpod library, which is for applications that use container pods. Container pods is a concept in Kubernetes.Security Fix(es): podman: podman missing TLS verification (CVE-2025-6032) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
redhat/podmanto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0 - Upgrade
Upgrade
redhat/podman-debuginfoto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0 - Upgrade
Upgrade
redhat/podman-debugsourceto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0 - Upgrade
Upgrade
redhat/podman-dockerto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0 - Upgrade
Upgrade
redhat/podman-remoteto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0 - Upgrade
Upgrade
redhat/podman-remote-debuginfoto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0 - Upgrade
Upgrade
redhat/podman-tests-debuginfoto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0 - Upgrade
Upgrade
redhat/podmanto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0.aa - Upgrade
Upgrade
redhat/podman-debuginfoto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0.aa - Upgrade
Upgrade
redhat/podman-debugsourceto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0.aa - Upgrade
Upgrade
redhat/podman-remoteto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0.aa - Upgrade
Upgrade
redhat/podman-remote-debuginfoto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0.aa - Upgrade
Upgrade
redhat/podman-tests-debuginfoto a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0.aa - Upgrade
Upgrade
redhat/podman-teststo a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0 - Upgrade
Upgrade
redhat/podman-teststo a version that resolves this vulnerability.Fixed in 5.4.0-12.el10_0.aa
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:10549?
The severity of RHSA-2025:10549 is classified as important.
How do I fix RHSA-2025:10549?
To fix RHSA-2025:10549, update the podman package to version 5.4.0-12.el10_0 or later.
What is the vulnerability associated with RHSA-2025:10549?
The vulnerability associated with RHSA-2025:10549 is missing TLS verification in podman, identified as CVE-2025-6032.
Which versions of podman are affected by RHSA-2025:10549?
Podman versions prior to 5.4.0-12.el10_0 are affected by RHSA-2025:10549.
Is podman the only package affected by RHSA-2025:10549?
No, other related packages like podman-remote and podman-debuginfo are also affected by RHSA-2025:10549.