Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-4122

Опубликовано: 08 дек. 2022
Источник: debian

Описание

A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
golang-github-containers-buildahunfixedpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2144983

  • Negligible security impact

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 2 лет назад

A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.

CVSS3: 5.9
redhat
больше 2 лет назад

A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.

CVSS3: 5.3
nvd
больше 2 лет назад

A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.

CVSS3: 5.3
github
больше 2 лет назад

Buildah (as part of Podman) vulnerable to Link Following

oracle-oval
7 месяцев назад

ELSA-2024-9102: podman security update (MODERATE)