Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4crw-w8pw-2hmf

Опубликовано: 08 дек. 2022
Источник: github
Github: Прошло ревью
CVSS3: 5.3

Описание

Buildah (as part of Podman) vulnerable to Link Following

A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.

Пакеты

Наименование

github.com/containers/podman/v4

go
Затронутые версииВерсия исправления

< 4.5.0

4.5.0

EPSS

Процентиль: 32%
0.00119
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 2 лет назад

A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.

CVSS3: 5.9
redhat
больше 2 лет назад

A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.

CVSS3: 5.3
nvd
больше 2 лет назад

A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.

CVSS3: 5.3
debian
больше 2 лет назад

A vulnerability was found in buildah. Incorrect following of symlinks ...

oracle-oval
7 месяцев назад

ELSA-2024-9102: podman security update (MODERATE)

EPSS

Процентиль: 32%
0.00119
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-59