Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

Fedora 37: FEDORA-2022-8298607490 Critical: Moby-Engine DoS Fix

fedora
Calendar Grey September 15, 2022
Dist Fedora Esm H88
Update the docker engine to version 20.10.18 and containerd to version 1.6.8 to address significant security vulnerabilities for Fedora 37 users.
# containerd Update to 1.6.8

Summary

Docker is an open source project to build, ship and run any application as a

lightweight container.

Docker containers are both hardware-agnostic and platform-agnostic. This means

they can run anywhere, from your laptop to the largest EC2 compute instance and

everything in between - and they don't require you to use a particular

language, framework or packaging system. That makes them great building blocks

for deploying and scaling web apps, databases, and backend services without

depending on a particular stack or provider.

# containerd Update to 1.6.8. Fixes rhbz#2094144. # moby-engine - Update to

20.10.18. - Mitigates CVE-2022-36109 / GHSA-rc4r-wh2q-q6c4

* Sat Sep 10 2022 Maxwell G - 20.10.18-1

- Update to 20.10.18.

- Mitigates CVE-2022-36109 / GHSA-rc4r-wh2q-q6c4

* Tue Aug 30 2022 Luca BRUNO - 20.10.17-8

- Move 'docker' group creation logic to a sysusers.d fragment

Resolves: rhbz#1745936

su -c 'dnf upgrade --advisory FEDORA-2022-8298607490' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam, report it:

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 37
Version: 20.10.18
Release: 1.fc37
Summary: The open-source application container engine

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here