Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Red Hat: 2021:307-2 Critical: Remote Code Execution in RHEL/8 Container

suse
Calendar Grey August 26, 2021
Dist Suse Esm H88
Important patch for SUSE Container resolving remote execution vulnerabilities and correcting cpio-related problems.
The container suse/sle15 was updated

Summary

Advisory ID: SUSE-SU-2021:2689-1 Released: Mon Aug 16 10:54:52 2021 Summary: Security update for cpio Type: security Severity: important Advisory ID: SUSE-RU-2021:2763-1 Released: Tue Aug 17 17:16:22 2021 Summary: Recommended update for cpio Type: recommended Severity: critical Advisory ID: SUSE-RU-2021:2780-1 Released: Thu Aug 19 16:09:15 2021 Summary: Recommended update for cpio Type: recommended

References

References : 1189206 1189465 1189465 CVE-2021-38185 CVE-2021-38185

1189206,CVE-2021-38185

This update for cpio fixes the following issues:

It was possible to trigger Remote code execution due to a integer overflow (CVE-2021-38185, bsc#1189206)

1189465

This update for cpio fixes the following issues:

- A regression in last update would cause builds to hang on various architectures(bsc#1189465)

1189465,CVE-2021-38185

This update for cpio fixes the following issues:

- A regression in the previous update could lead to crashes (bsc#1189465)

Severity
critical
Lowest
Low
Medium
High
Critical

Container Advisory ID : SUSE-CU-2021:290-1
Container Tags : suse/sle15:15.0 , suse/sle15:15.0.4.22.441
Container Release : 4.22.441
Severity : critical
Type : security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here