Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 38 podman-tui 1.0.0 Critical Advisory for Improper Data Handling

fedora
Calendar Grey March 30, 2024
Dist Fedora Esm H88
Podman-tui version 1.0.0 released for Fedora 38 features a pivotal security patch addressing faulty data management. Update immediately!
podman-tui release v1.0.0 Security fix for [CVE-2024-28180]

Summary

podman-tui is a terminal user interface for Podman v4.

podman-tui is using podman.socket service to communicate with podman environment

and SSH to connect to remote podman machines.

Update Information:

podman-tui release v1.0.0 Security fix for [CVE-2024-28180]

Change Log

* Thu Mar 21 2024 Navid Yaghoobi - 1.0.0-1 - release v1.0.0 * Sat Mar 16 2024 Navid Yaghoobi - 0.18.0-1 - release v0.18.0 * Sun Feb 11 2024 Maxwell G - 0.17.0-2 - Rebuild for golang 1.22.0

References


[ 1 ] Bug #2268848 - CVE-2024-28176 podman-tui: go-jose: resource exhaustion [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2268848 [ 2 ] Bug #2268895 - CVE-2024-28180 podman-tui: jose-go: improper handling of highly compressed data [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2268895

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-529fe8a802' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: podman-tui
Product: Fedora 38
Version: 1.0.0
Release: 1.fc38
Summary: Podman Terminal User Interface

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here