Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

SUSE: 2019:2223-1 Moderate: Podman, Slirp4netns, Libcontainers Update

suse
Calendar Grey August 27, 2019
Dist Suse Esm H88
SUSE has released a security update for podman, slirp4netns, and libcontainers-common, which resolves various vulnerabilities and is now accessible.
An update that solves three vulnerabilities and has four fixes is now available.

Summary

This is a version update for podman to version 1.4.4 (bsc#1143386). Additional changes by SUSE on top: - Remove fuse-overlayfs because it's (currently) an unsatisfied dependency on SLE (bsc#1143386) - Update libpod.conf to use correct infra_command - Update libpod.conf to use better versioned pause container - Update libpod.conf to use official kubic pause container - Update libpod.conf to match latest features set: detach_keys, lock_type, runtime_supports_json - Add podman-remote varlink client Version update podman to v1.4.4: - Features - Podman now has greatly improved support for containers using multiple OCI runtimes. Containers now remember if they were created with a different runtime using --runtime and will always use that runtime

References

#1096726 #1123156 #1123387 #1135460 #1136974

#1137860 #1143386

Cross- CVE-2018-15664 CVE-2019-10152 CVE-2019-6778

Affected Products:

SUSE Linux Enterprise Module for Containers 15-SP1

SUSE Linux Enterprise Module for Basesystem 15-SP1

https://www.suse.com/security/cve/CVE-2018-15664.html

https://www.suse.com/security/cve/CVE-2019-10152.html

https://www.suse.com/security/cve/CVE-2019-6778.html

https://bugzilla.suse.com/1096726

https://bugzilla.suse.com/1123156

https://bugzilla.suse.com/1123387

https://bugzilla.suse.com/1135460

https://bugzilla.suse.com/1136974

https://bugzilla.suse.com/1137860

https://bugzilla.suse.com/1143386

Announcement ID: SUSE-SU-2019:2223-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here