OCI network stack
Netavark is a rust based network stack for containers. It is being
designed to work with Podman but is also applicable for other OCI
container management applications.
Netavark is a tool for configuring networking for Linux containers.
Its features include:
* Configuration of container networks via JSON configuration file
* Creation and management of required network interfaces,
including MACVLAN networks
* All required firewall configuration to perform NAT and port
forwarding as required for containers
* Support for iptables and firewalld at present, with support
for nftables planned in a future release
* Support for rootless containers
* Support for IPv4 and IPv6
* Support for container DNS resolution via aardvark-dns.
Update Information:
Security fix for CVE-2024-1753
Automatic update for podman-5.0.0-1.fc40.
Changelog for podman
* Tue Mar 19 2024 Packit
* Wed Mar 20 2024 Lokesh Mandvekar
[ 1 ] Bug #2265513 - CVE-2024-1753 buildah: full container escape at build time
https://bugzilla.redhat.com/show_bug.cgi?id=2265513
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-a267e93f8c' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html
Get the latest Linux and open source security news straight to your inbox.