CVE-2025-6032 - CERT CVE
ID CVE-2025-6032
Sažetak A flaw was found in Podman. The podman machine init command fails to verify the TLS certificate when downloading the VM images from an OCI registry. This issue results in a Man In The Middle attack.
Reference
CVSS
Base: 8.3
Impact: 6.0
Exploitability:1.6
Pristup
VektorSloženostAutentikacija
NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
HIGH HIGH HIGH
CVSS vektor CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
Zadnje važnije ažuriranje 26-06-2025 - 18:58
Objavljeno 24-06-2025 - 14:15