RHEL 10 : rh-podman-desktop (RHSA-2026:57590)

critical Nessus Plugin ID 338414

概要

遠端 Red Hat 主機缺少一個或多個安全性更新。

說明

遠端 Redhat Enterprise Linux 10 主機上安裝的套件受到 RHSA-2026:57590 公告中提及的多個弱點影響。

Podman Desktop 的 Red Hat 組建是使用 Podman 管理容器的圖形工具。它允許使用者使用桌面 GUI 執行、管理和設定容器和容器映像。

安全性修正:

* github.com/go-jose/go-jose/v3:github.com/go-jose/go-jose/v4:Go JOSE:透過特製的 JSON Web 加密 (JWE) 物件 (CVE-2026-34986) 造成拒絕服務

* ip-address:ip-address:透過不當的 HTML 逸出不受信任輸入的跨網站指令碼 (CVE-2026-42338)

* protobufjs: protobufjs:透過特製的 JSON 描述元造成拒絕服務 (CVE-2026-45740)

* ws: ws:透過 'websocket.close()' 和 'TypedArray' (CVE-2026-45736) 造成未初始化的記憶體洩漏

* devalue: devalue:透過疏鬆陣列的反序列化造成過多的記憶體消耗 (CVE-2026-42570)

* tmp:透過未清理的前綴/後綴進行路徑遊走,可啟用目錄逸出 (CVE-2026-44705)

* form-data: form-data:透過 CRLF 插入 (CVE-2026-12143) 覆寫表單欄位

* webpack-dev-server: webpack-dev-server: 透過不當的 Proxy 設定造成資訊洩露和拒絕服務 (CVE-2026-9595)

* ws: ws:透過小型 WebSocket 片段 (CVE-2026-48779) 耗盡記憶體而造成拒絕服務

* extract-zip: github.com/maxogden/extract-zip: extract-zip: 透過符號連結驗證繞過 (CVE-2026-56876) 進行任意檔案寫入和資訊洩露

* fast-uri: fast-uri: 由於不正確的 Unicode 主機名稱規範化而導致的安全策略繞過 (CVE-2026-13676)

* brace-expansion: brace-expansion:由於指數時間複雜度而導致的拒絕服務 (CVE-2026-13149)

* tar: Node-tar:透過格式錯誤的 tar 封存標頭 (CVE-2026-59874) 造成拒絕服務

* tar: node-tar:透過特製的 gzip 炸彈進行拒絕服務 (CVE-2026-59873)

* js-yaml: js-yaml: 透過特製的 YAML 文件 (CVE-2026-59869) 造成拒絕服務

* protobufjs: protobufjs:透過特製的 .proto 結構描述 (CVE-2026-59877) 造成拒絕服務

* grpc-js: @grpc/grpc-js: 透過格式錯誤的 HTTP/2 資料流啟動導致伺服器損毀 (CVE-2026-48068)

* linkify-it: linkify-it: 透過演算法複雜性弱點造成拒絕服務 (CVE-2026-48801)

* dompurify: DOMPurify: 跨網站指令碼弱點允許程式碼執行 (CVE-2026-49978)

* brace-expansion: Brace-expansion:透過 expand() 函式 (CVE-2026-14257) 中的記憶體耗盡造成拒絕服務

* postcss: PostCSS:透過特製的 CSS 輸入 (CVE-2026-45623) 進行資訊洩露和拒絕服務

* postcss: PostCSS:透過特製的 sourceMappingURL (CVE-2026-69153) 進行資訊洩露

* brace-expansion:透過無限中間陣列的 DoS,繞 CVE-2026-14257 過緩解 (CVE-2026-69152)

* ip-address: ip-address:不一致的 IP 位址剖析會導致伺服器端要求偽造 (SSRF) 和信任邊界繞過 (CVE-2026-69192)

錯誤修正和增強功能:

* 將 RH Podman Desktop 1.1.2 發佈至 RHEL 10.2 擴充功能 (JIRA:RHEL-238929)

如需安全性問題的詳細資料,包括影響、CVSS 評分、致謝及其他相關資訊,請參閱〈參照〉一節列出的 CVE 頁面。

Tenable 已直接從 Red Hat Enterprise Linux 安全公告擷取前置描述區塊。

請注意,Nessus 並未測試這些問題,而是僅依據應用程式自我報告的版本號碼作出判斷。

解決方案

更新受影響的 rh-podman-desktop 套件。

另請參閱

https://access.redhat.com/errata/RHSA-2026:57590

https://access.redhat.com/security/updates/classification/#important

https://bugzilla.redhat.com/show_bug.cgi?id=2455470

https://bugzilla.redhat.com/show_bug.cgi?id=2476810

https://bugzilla.redhat.com/show_bug.cgi?id=2477081

https://bugzilla.redhat.com/show_bug.cgi?id=2477914

https://bugzilla.redhat.com/show_bug.cgi?id=2487050

https://bugzilla.redhat.com/show_bug.cgi?id=2487946

https://bugzilla.redhat.com/show_bug.cgi?id=2488480

https://bugzilla.redhat.com/show_bug.cgi?id=2488934

https://bugzilla.redhat.com/show_bug.cgi?id=2489661

https://bugzilla.redhat.com/show_bug.cgi?id=2493633

https://bugzilla.redhat.com/show_bug.cgi?id=2494197

https://bugzilla.redhat.com/show_bug.cgi?id=2494813

https://bugzilla.redhat.com/show_bug.cgi?id=2498116

https://bugzilla.redhat.com/show_bug.cgi?id=2498120

https://bugzilla.redhat.com/show_bug.cgi?id=2498122

https://bugzilla.redhat.com/show_bug.cgi?id=2498127

https://bugzilla.redhat.com/show_bug.cgi?id=2499682

https://bugzilla.redhat.com/show_bug.cgi?id=2500656

https://bugzilla.redhat.com/show_bug.cgi?id=2500695

https://bugzilla.redhat.com/show_bug.cgi?id=2506433

https://bugzilla.redhat.com/show_bug.cgi?id=2507595

https://bugzilla.redhat.com/show_bug.cgi?id=2510719

https://bugzilla.redhat.com/show_bug.cgi?id=2510722

https://bugzilla.redhat.com/show_bug.cgi?id=2510801

https://issues.redhat.com/browse/RHEL-238929

http://www.nessus.org/u?083921a1

Plugin 詳細資訊

嚴重性: Critical

ID: 338414

檔案名稱: redhat-RHSA-2026-57590.nasl

版本: 1.1

類型: Local

代理程式: unix

已發布: 2026/8/20

已更新: 2026/8/20

支援的感應器: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

風險資訊

VPR

風險因素: High

分數: 7

百分位數: 98.22

Vendor

Vendor Severity: Important

CVSS v2

風險因素: High

基本分數: 9.4

時間性分數: 7.4

媒介: CVSS2#AV:N/AC:L/Au:N/C:C/I:N/A:C

CVSS 評分資料來源: CVE-2026-45623

CVSS v3

風險因素: Critical

基本分數: 9.1

時間性分數: 8.2

媒介: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

時間媒介: CVSS:3.0/E:P/RL:O/RC:C

CVSS v4

風險因素: Critical

Base Score: 9.2

Threat Score: 8.7

Threat Vector: CVSS:4.0/E:P

Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H

CVSS 評分資料來源: CVE-2026-59873

弱點資訊

CPE: cpe:/o:redhat:enterprise_linux:10.2, p-cpe:/a:redhat:enterprise_linux:rh-podman-desktop

必要的 KB 項目: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu

可被惡意程式利用: true

可輕鬆利用: Exploits are available

修補程式發佈日期: 2026/8/20

弱點發布日期: 2026/4/3

參考資訊

CVE: CVE-2026-12143, CVE-2026-13149, CVE-2026-13676, CVE-2026-14257, CVE-2026-34986, CVE-2026-42338, CVE-2026-42570, CVE-2026-44705, CVE-2026-45623, CVE-2026-45736, CVE-2026-45740, CVE-2026-48068, CVE-2026-48779, CVE-2026-48801, CVE-2026-49978, CVE-2026-56876, CVE-2026-59869, CVE-2026-59873, CVE-2026-59874, CVE-2026-59877, CVE-2026-69152, CVE-2026-69153, CVE-2026-69192, CVE-2026-9595

CWE: 1050, 131, 1333, 1389, 22, 248, 346, 551, 606, 770, 776, 79, 824, 835, 93

RHSA: 2026:57590