Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-4123

Опубликовано: 08 дек. 2022
Источник: nvd
CVSS3: 3.3
EPSS Низкий

Описание

A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path traversal, resulting in an impact to confidentiality.

Ссылки

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:podman_project:podman:4.1.0:-:*:*:*:*:*:*
cpe:2.3:a:podman_project:podman:4.1.0:rc1:*:*:*:*:*:*
cpe:2.3:a:podman_project:podman:4.1.0:rc2:*:*:*:*:*:*
cpe:2.3:a:podman_project:podman:4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:podman_project:podman:4.2.0:-:*:*:*:*:*:*
cpe:2.3:a:podman_project:podman:4.2.0:rc1:*:*:*:*:*:*
cpe:2.3:a:podman_project:podman:4.2.0:rc2:*:*:*:*:*:*
cpe:2.3:a:podman_project:podman:4.2.0:rc3:*:*:*:*:*:*
cpe:2.3:a:podman_project:podman:4.2.1:*:*:*:*:*:*:*
cpe:2.3:a:podman_project:podman:4.3.0:-:*:*:*:*:*:*
Конфигурация 2

Одно из

cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*

EPSS

Процентиль: 12%
0.00041
Низкий

3.3 Low

CVSS3

Дефекты

CWE-23
CWE-22
CWE-22

Связанные уязвимости

CVSS3: 3.3
ubuntu
около 3 лет назад

A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path traversal, resulting in an impact to confidentiality.

CVSS3: 3.1
redhat
около 3 лет назад

A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path traversal, resulting in an impact to confidentiality.

CVSS3: 3.3
msrc
4 месяца назад

A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path traversal, resulting in an impact to confidentiality.

CVSS3: 3.3
debian
около 3 лет назад

A flaw was found in Buildah. The local path and the lowest subdirector ...

CVSS3: 3.3
github
около 3 лет назад

Buildah (as part of Podman) vulnerable to Path Traversal

EPSS

Процентиль: 12%
0.00041
Низкий

3.3 Low

CVSS3

Дефекты

CWE-23
CWE-22
CWE-22