FEDORA-2019-b66d704846

security update in Fedora 29 for podman

Status: stable 2 months ago

do not install /usr/libexec/crio - conflicts with crio


Resolves: #1715668 - CVE-2019-10152

Comments 10

This update has been submitted for testing by lsm5.

This update test gating status has been changed to 'waiting'.

This update has obsoleted podman-1.4.0-1.fc29, and has inherited its bugs and notes.

This update test gating status has been changed to 'ignored'.

LGTM. #980 (regression) and #3302 (intermittent weirdness with attach) are IMO minor.

Confirmed that /usr/libexec/crio* are gone.

karma: +1

This update has been pushed to testing.

Installs fine (when compared to podman-1.4.0-1.fc29) and works with toolbox.

karma: +1

Installs fine (when compared to podman-1.4.0-1.fc29) and works with toolbox.

karma: +1

This update has been submitted for stable by bodhi.

This update has been pushed to stable.

Add Comment & Feedback

Please login to add feedback.

Content Type
RPM
Status
stable
Test Gating
Submitted by
Update Type
security
Update Severity
medium
Karma
+3
stable threshold: 3
unstable threshold: -3
Autopush (karma)
Enabled
Autopush (time)
Disabled
Dates
submitted 2 months ago
in testing 2 months ago
in stable 2 months ago

Related Bugs 1

00 #1715668 CVE-2019-10152 podman: Improper symlink resolution allows access to host files when executing `podman cp` on running containers [fedora-all]

Automated Test Results