affected
created on 29 Oct 2025
NIXPKGS-2025-0022
A vulnerability was found in `podman build` and `buildah.` This issue occurs in a container breakout by using --jobs=2 and a race condition when building a malicious Containerfile. SELinux might mitigate it, but even with SELinux on, it still allows the enumeration of files and directories on the host.
Vulnerabilities
Related packages
pkgs.podman
Program for managing pods, containers and container images
pkgs.buildah
Tool which facilitates building OCI images