podman vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the podman package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Improperly Controlled Sequential Memory Allocation

*
  • L
Improper Verification of Cryptographic Signature

*
  • M
Improper Input Validation

*
  • M
Information Exposure

*
  • M
Cross-site Scripting (XSS)

*
  • M
Directory Traversal

*
  • M
Allocation of Resources Without Limits or Throttling

<6:5.4.0-9.el10_0
  • H
Allocation of Resources Without Limits or Throttling

<6:5.4.0-9.el10_0
  • M
HTTP Request Smuggling

*
  • H
Allocation of Resources Without Limits or Throttling

*
  • M
Improper Input Validation

*
  • L
Improper Verification of Cryptographic Signature

*
  • M
Information Exposure

*
  • L
Incorrect Authorization

*
  • L
Incorrect Authorization

*
  • M
Cross-site Scripting (XSS)

*
  • M
Improper Input Validation

*
  • M
Resource Exhaustion

*
  • M
Missing Release of Resource after Effective Lifetime

*
  • M
Buffer Overflow

*
  • L
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • C
Incorrect Authorization

*
  • L
Resource Exhaustion

*
  • M
Directory Traversal

*
  • L
NULL Pointer Dereference

*
  • M
Use of Uninitialized Variable

*
  • L
Improper Input Validation

*
  • M
Use of a Broken or Risky Cryptographic Algorithm

*
  • M
Out-of-bounds Read

*
  • M
Improper Validation of Integrity Check Value

*
  • M
Improper Certificate Validation

*
  • L
Race Condition

*
  • L
Placement of User into Incorrect Group

*
  • L
Placement of User into Incorrect Group

*
  • L
Authentication Bypass by Primary Weakness

*
  • L
Resource Exhaustion

*
  • H
Resource Exhaustion

*
  • L
Directory Traversal

*
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Integer Overflow or Wraparound

*
  • L
Improper Input Validation

*
  • M
Improper Input Validation

*
  • M
Race Condition

*
  • M
Improper Input Validation

*
  • M
Resource Exhaustion

*
  • M
Information Exposure

*
  • M
Resource Exhaustion

*
  • M
Link Following

*
  • M
Insufficiently Protected Credentials

*
  • H
Incorrect Authorization

*
  • M
Origin Validation Error

*
  • M
Incorrect Default Permissions

*
  • M
Incorrect Default Permissions

*
  • H
Resource Exhaustion

*
  • M
HTTP Request Smuggling

*
  • M
HTTP Request Smuggling

*
  • M
Use After Free

*
  • M
Information Exposure

*
  • M
Information Exposure

*
  • M
Incorrect Calculation

*
  • M
Incorrect Calculation

*
  • M
Time-of-check Time-of-use (TOCTOU)

*
  • M
Resource Exhaustion

*
  • M
Resource Exhaustion

*
  • H
Link Following

*