Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

SUSE: 2020:2731-1 Moderate: Podman Container Security Update

suse
Calendar Grey September 24, 2020
Dist Suse Esm H88
SUSE has issued a security patch that resolves an issue impacting components such as conmon, fuse-overlayfs, libcontainers-common, and podman.
An update that solves one vulnerability, contains one feature and has 6 fixes is now available

Summary

This update for conmon, fuse-overlayfs, libcontainers-common, podman fixes the following issues: podman was updated to v2.0.6 (bsc#1175821) - install missing systemd units for the new Rest API (bsc#1175957) and a few man-pages that where missing before - Drop varlink API related bits (in favor of the new API) - fix install location for zsh completions * Fixed a bug where running systemd in a container on a cgroups v1 system would fail. * Fixed a bug where /etc/passwd could be re-created every time a container is restarted if the container's /etc/passwd did not contain an entry for the user the container was started as. * Fixed a bug where containers without an /etc/passwd file specifying a non-root user would not start. * Fixed a bug where the --remote flag would sometimes not make remote

References

#1162432 #1164090 #1165738 #1171578 #1174075

#1175821 #1175957 SLE-12122

Cross- CVE-2020-1726

Affected Products:

SUSE Linux Enterprise Module for Containers 15-SP2

SUSE Linux Enterprise Module for Containers 15-SP1

SUSE Linux Enterprise Module for Basesystem 15-SP2

SUSE Linux Enterprise Module for Basesystem 15-SP1

https://www.suse.com/security/cve/CVE-2020-1726.html

https://bugzilla.suse.com/1162432

https://bugzilla.suse.com/1164090

https://bugzilla.suse.com/1165738

https://bugzilla.suse.com/1171578

https://bugzilla.suse.com/1174075

https://bugzilla.suse.com/1175821

https://bugzilla.suse.com/1175957

Announcement ID: SUSE-SU-2020:2731-1
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here