=========================================================================Ubuntu Security Notice USN-6170-1
June 16, 2023

libpod vulnerabilities
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 22.04 LTS

Summary:

Podman could be made to pull an untrusted image.

Software Description:
- libpod: engine to run OCI-based containers in Pods

Details:

It was discovered that Podman incorrectly handled certain images.
An attacker could possibly use this issue to pull an untrusted image.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 22.04 LTS:
  podman                          3.4.4+ds1-1ubuntu1.22.04.1
  podman-docker                   3.4.4+ds1-1ubuntu1.22.04.1

In general, a standard system update will make all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-6170-1
  https://launchpad.net/bugs/2007972

Package Information:
  https://launchpad.net/ubuntu/+source/libpod/3.4.4+ds1-1ubuntu1.22.04.1

Ubuntu 6170-1: Podman vulnerabilities

June 19, 2023
Podman could be made to pull an untrusted image.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: podman 3.4.4+ds1-1ubuntu1.22.04.1 podman-docker 3.4.4+ds1-1ubuntu1.22.04.1 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-6170-1

https://launchpad.net/bugs/2007972

Severity
June 16, 2023

Package Information

https://launchpad.net/ubuntu/+source/libpod/3.4.4+ds1-1ubuntu1.22.04.1

Related News