Описание
A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.
Ссылки
- Issue TrackingThird Party Advisory
- PatchThird Party Advisory
- Issue TrackingThird Party Advisory
- PatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:podman_project:podman:4.3.0:-:*:*:*:*:*:*
Конфигурация 2
Одно из
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
EPSS
Процентиль: 32%
0.00119
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-59
CWE-59
Связанные уязвимости
CVSS3: 5.3
ubuntu
больше 2 лет назад
A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.
CVSS3: 5.9
redhat
больше 2 лет назад
A vulnerability was found in buildah. Incorrect following of symlinks while reading .containerignore and .dockerignore results in information disclosure.
CVSS3: 5.3
debian
больше 2 лет назад
A vulnerability was found in buildah. Incorrect following of symlinks ...
CVSS3: 5.3
github
больше 2 лет назад
Buildah (as part of Podman) vulnerable to Link Following
EPSS
Процентиль: 32%
0.00119
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-59
CWE-59