mirror of
https://github.com/podman-container-tools/podman.git
synced 2026-10-09 15:37:42 +00:00
Release notes for v6.1.3
Signed-off-by: Matt Heon <mheon@redhat.com>
This commit is contained in:
parent
5e81f3adf9
commit
30b764e56d
1 changed files with 7 additions and 0 deletions
|
|
@ -1,5 +1,12 @@
|
|||
# Release Notes
|
||||
|
||||
## 6.1.3
|
||||
### Security
|
||||
- This release addresses [CVE-2026-94603](https://github.com/podman-container-tools/podman/security/advisories/GHSA-2cvf-wqm6-wr9g), where a `podman run` on a checkpoint image (any image with the `io.podman.annotations.checkpoint.runtime.name` annotation) could disable all sandboxing, including sandboxing specified by the user, when the container was created.
|
||||
|
||||
### Breaking Changes
|
||||
- Removed support for checkpoint images in `podman run` due to serious security concerns with the different security models of running images and running checkpoints. Checkpoints ignore user-specified security configuration and are very difficult to run safely.
|
||||
|
||||
## 6.1.2
|
||||
### Security
|
||||
- This release addresses ([CVE-2025-11395](https://github.com/podman-container-tools/container-libs/security/advisories/GHSA-3gcv-x57j-xqxv)), where importing images containing crafted layer tarballs with the `podman load` command, or importing volumes containing crafted symlinks with `podman volume import`, allows overwriting files on the host.
|
||||
|
|
|
|||
Loading…
Add table
Reference in a new issue