Red Hat Security Advisory: updated web-terminal/tooling container image
The Red Hat Web Terminal 1.11 on RHEL 9 web-terminal-tooling container image has been updated to fix the following important CVEs: CVE-2025-5914, CVE-2025-49794, CVE-2025-49796, CVE-2025-6020, CVE-2025-48384, CVE-2025-48385, CVE-2025-7425, CVE-2025-6965, CVE-2025-8941. Users of web-terminal/tooling container images are advised to upgrade to this updated image, which contain patches to correct security issues. Users of these images are also encouraged to rebuild all container images that depend on these images. You can find images updated by this advisory in Red Hat Container Catalog (see References).
AI Analysis
Technical Summary
The Red Hat Web Terminal 1.11 on RHEL 9 web-terminal-tooling container image has been updated to fix nine important CVEs: CVE-2025-5914 (libarchive double free), CVE-2025-49794 and CVE-2025-49796 (libxml heap use-after-free and type confusion), CVE-2025-6020 and CVE-2025-8941 (linux-pam directory traversal and incomplete fix), CVE-2025-48384 and CVE-2025-48385 (git arbitrary code execution and arbitrary file writes), CVE-2025-7425 (libxslt heap use-after-free), and CVE-2025-6965 (sqlite integer truncation). The advisory recommends upgrading to the updated container image and rebuilding all dependent container images. The vendor advisory (RHSA-2025:15827) confirms the availability of patches and provides guidance for applying the update.
Potential Impact
The vulnerabilities fixed include memory corruption issues (double free, use-after-free), directory traversal, arbitrary code execution, arbitrary file writes, and integer truncation. These could lead to denial of service, code execution, or unauthorized file manipulation if exploited. However, no known exploits in the wild have been reported. The impact is considered high due to the nature of the vulnerabilities and the components affected within the container image.
Mitigation Recommendations
Red Hat has released an updated web-terminal-tooling container image that addresses these vulnerabilities. Users should upgrade to this updated image promptly and rebuild all container images that depend on it. Prior to applying this update, ensure all previously released errata relevant to your system are applied. Follow Red Hat's official guidance for applying the update as detailed in the advisory RHSA-2025:15827. No additional mitigation steps are indicated beyond applying the updated container image and rebuilding dependent images.
Red Hat Security Advisory: updated web-terminal/tooling container image
Description
The Red Hat Web Terminal 1.11 on RHEL 9 web-terminal-tooling container image has been updated to fix the following important CVEs: CVE-2025-5914, CVE-2025-49794, CVE-2025-49796, CVE-2025-6020, CVE-2025-48384, CVE-2025-48385, CVE-2025-7425, CVE-2025-6965, CVE-2025-8941. Users of web-terminal/tooling container images are advised to upgrade to this updated image, which contain patches to correct security issues. Users of these images are also encouraged to rebuild all container images that depend on these images. You can find images updated by this advisory in Red Hat Container Catalog (see References).
Affected software
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The Red Hat Web Terminal 1.11 on RHEL 9 web-terminal-tooling container image has been updated to fix nine important CVEs: CVE-2025-5914 (libarchive double free), CVE-2025-49794 and CVE-2025-49796 (libxml heap use-after-free and type confusion), CVE-2025-6020 and CVE-2025-8941 (linux-pam directory traversal and incomplete fix), CVE-2025-48384 and CVE-2025-48385 (git arbitrary code execution and arbitrary file writes), CVE-2025-7425 (libxslt heap use-after-free), and CVE-2025-6965 (sqlite integer truncation). The advisory recommends upgrading to the updated container image and rebuilding all dependent container images. The vendor advisory (RHSA-2025:15827) confirms the availability of patches and provides guidance for applying the update.
Potential Impact
The vulnerabilities fixed include memory corruption issues (double free, use-after-free), directory traversal, arbitrary code execution, arbitrary file writes, and integer truncation. These could lead to denial of service, code execution, or unauthorized file manipulation if exploited. However, no known exploits in the wild have been reported. The impact is considered high due to the nature of the vulnerabilities and the components affected within the container image.
Mitigation Recommendations
Red Hat has released an updated web-terminal-tooling container image that addresses these vulnerabilities. Users should upgrade to this updated image promptly and rebuild all container images that depend on it. Prior to applying this update, ensure all previously released errata relevant to your system are applied. Follow Red Hat's official guidance for applying the update as detailed in the advisory RHSA-2025:15827. No additional mitigation steps are indicated beyond applying the updated container image and rebuilding dependent images.
Technical Details
- Gcve Source
- db.gcve.eu
- Csaf Category
- csaf_security_advisory
- Csaf Version
- 2.0
- Publisher
- Red Hat Product Security
- Advisory Id
- RHSA-2025:15827
- Cve Count
- 9
- Additional Cves
- ["CVE-2025-6020","CVE-2025-6965","CVE-2025-7425","CVE-2025-8941","CVE-2025-48384","CVE-2025-48385","CVE-2025-49794","CVE-2025-49796"]
- State
- PUBLISHED
Threat ID: 6a1f4e87e29bf47b500812ae
Added to database: 06/02/2026, 21:43:35 UTC
Last enriched: 08/10/2026, 21:02:24 UTC
Last updated: 09/10/2026, 19:42:37 UTC
Views: 128
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.