Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Mageia 9 MGASA-2023-0329 High: Docker Security Issues Fixed

mageia
Calendar Grey November 29, 2023
Dist Mageia Esm H88
Updated software packages tackle weaknesses and bugs for Fedora, enhancing security measures on 30 Nov 2023.
This update fixes several security issues and also solves some other issues - manage change of launch option earlier in post process - Automatically convert -g option to --data-ro...

Summary

This update fixes several security issues and also solves some other issues
- manage change of launch option earlier in post process - Automatically convert -g option to --data-root in installed /etc/sysconfig/docker-storage - Fix CVE-2023-26054 and CVE-2023-2884[0-2]

References

- https://bugs.mageia.org/show_bug.cgi?id=31733

- https://github.com/moby/moby/security/advisories/GHSA-vwm3-crmr-xfxw

- https://github.com/moby/buildkit/security/advisories/GHSA-gc89-7gcr-jxqc

- https://github.com/moby/moby/releases/tag/v24.0.5

- https://github.com/moby/moby/releases/tag/v24.0.4

- https://github.com/moby/moby/releases/tag/v24.0.3

- https://github.com/moby/moby/releases/tag/v24.0.2

- https://github.com/moby/moby/releases/tag/v24.0.1

- https://github.com/moby/moby/releases/tag/v24.0.0

- https://github.com/moby/moby/releases/tag/v23.0.3

- https://www.cve.org/CVERecord?id=CVE-2023-26054

- https://www.cve.org/CVERecord?id=CVE-2023-28840

- https://www.cve.org/CVERecord?id=CVE-2023-28841

- https://www.cve.org/CVERecord?id=CVE-2023-28842

Resolution

SRPMS

- 9/core/docker-24.0.5-4.mga9

- 9/core/docker-containerd-1.7.3-1.mga9

Publication date: 29 Nov 2023
URL: https://advisories.mageia.org/MGASA-2023-0329.html
Type: security
CVE: CVE-2023-26054, CVE-2023-28840, CVE-2023-28841, CVE-2023-28842

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here