Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Rocky Linux 8 RLSA-2024:8846 important: podman and buildah issues

rocky
Calendar Grey November 8, 2024
Rockylinux Esm H88
Rocky Linux 8 patch resolves crucial security flaws within container-tools, particularly focusing on podman weaknesses.
Important: container-tools:rhel8 security update

Summary

An update is available for podman, buildah, module.toolbox, module.podman, cockpit-podman, containers-common, module.criu, module.conmon, module.aardvark-dns, module.containers-common, module.python-podman, oci-seccomp-bpf-hook, module.fuse-overlayfs, module.oci-seccomp-bpf-hook, module.udica, module.crun, container-selinux, module.runc, crun, conmon, module.netavark, module.containernetworking-plugins, module.cockpit-podman, toolbox, module.skopeo, criu, runc, module.slirp4netns, netavark, slirp4netns, udica, skopeo, libslirp, fuse-overlayfs, python-podman, module.buildah, module.container-selinux, module.libslirp, containernetworking-plugins, aardvark-dns. This update affects Rocky Linux 8. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list


RPMs

aardvark-dns-2:1.10.1-2.module+el8.10.0+1874+ce489889.aarch64.rpm

aardvark-dns-2:1.10.1-2.module+el8.10.0+1874+ce489889.src.rpm

aardvark-dns-2:1.10.1-2.module+el8.10.0+1874+ce489889.x86_64.rpm

buildah-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm

buildah-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.src.rpm

buildah-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.x86_64.rpm

buildah-debuginfo-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm

buildah-debuginfo-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.x86_64.rpm

buildah-debugsource-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm

buildah-debugsource-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.x86_64.rpm

buildah-tests-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm

buildah-tests-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.x86_64.rpm

buildah-tests-debuginfo-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.aarch64.rpm

buildah-tests-debuginfo-2:1.33.10-1.module+el8.10.0+1880+8e896d1b.x86_64.rpm

Read the Full Advisory

References

No references

CVES

https://www.cve.org/CVERecord?id=CVE-2024-9341

https://www.cve.org/CVERecord?id=CVE-2024-9407

https://www.cve.org/CVERecord?id=CVE-2024-9675

Severity
important

Name: RLSA-2024:8846
Affected Products: Rocky Linux 8

Fixes

https://bugzilla.redhat.com/show_bug.cgi?id=2315691

https://bugzilla.redhat.com/show_bug.cgi?id=2315887

https://bugzilla.redhat.com/show_bug.cgi?id=2317458


Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here