An update for buildah is now available for Rocky Linux 9. Rocky Enterprise Software Foundation Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
The buildah package provides a tool for facilitating building OCI container images. Among other things, buildah enables you to: Create a working container, either from scratch or using an image as a starting point; Create an image, either from a working container or using the instructions in a Dockerfile; Build both Docker and OCI images. For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Rocky Linux 9.1 Release Notes linked from the References section.
No References
https://access.redhat.com/hydra/rest/securitydata/cve/CVE-2022-27191.json
https://bugzilla.redhat.com/show_bug.cgi?id=1939485
https://bugzilla.redhat.com/show_bug.cgi?id=1989564
https://bugzilla.redhat.com/show_bug.cgi?id=1989570
https://bugzilla.redhat.com/show_bug.cgi?id=1989575
https://bugzilla.redhat.com/show_bug.cgi?id=2064702
https://bugzilla.redhat.com/show_bug.cgi?id=2081835
https://bugzilla.redhat.com/show_bug.cgi?id=2121445
https://bugzilla.redhat.com/show_bug.cgi?id=2121453