stable

buildah-1.37.5-1.fc40 and podman-5.2.5-2.fc40

FEDORA-2024-054752ae69 created by lsm5 3 months ago for Fedora 40

Fixes CVE-2024-9341, CVE-2024-9407, CVE-2024-9675 and CVE-2024-9676.

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2024-054752ae69

This update has been submitted for testing by lsm5.

3 months ago

This update's test gating status has been changed to 'waiting'.

3 months ago

lsm5 edited this update.

3 months ago

This update's test gating status has been changed to 'passed'.

3 months ago

This update has been pushed to testing.

3 months ago

lsm5 edited this update.

New build(s):

  • podman-5.2.5-2.fc40

Removed build(s):

  • podman-5.2.5-1.fc40

Karma has been reset.

3 months ago

This update has been submitted for testing by lsm5.

3 months ago

This update's test gating status has been changed to 'failed'.

3 months ago

This update's test gating status has been changed to 'waiting'.

3 months ago

This update's test gating status has been changed to 'failed'.

3 months ago

This update has been pushed to testing.

3 months ago
User Icon filiperosset commented & provided feedback 3 months ago
karma

no regressions noted

This update's test gating status has been changed to 'waiting'.

3 months ago

This update's test gating status has been changed to 'failed'.

3 months ago

This update's test gating status has been changed to 'waiting'.

2 months ago

This update's test gating status has been changed to 'failed'.

2 months ago

This update's test gating status has been changed to 'waiting'.

2 months ago

This update's test gating status has been changed to 'passed'.

2 months ago

This update has been submitted for stable by lsm5.

2 months ago

This update has been pushed to stable.

2 months ago

Please login to add feedback.

Metadata
Type
security
Severity
medium
Karma
1
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
3
Stable by Time
14 days
Dates
submitted
3 months ago
in testing
3 months ago
in stable
2 months ago
modified
3 months ago
BZ#2315691 CVE-2024-9341 Podman: Buildah: cri-o: FIPS Crypto-Policy Directory Mounting Issue in containers/common Go Library
0
0
BZ#2315887 CVE-2024-9407 Buildah: Podman: Improper Input Validation in bind-propagation Option of Dockerfile RUN --mount Instruction
0
0
BZ#2317462 CVE-2024-9675 buildah: Buildah allows arbitrary directory mount [fedora-all]
0
0
BZ#2317464 CVE-2024-9675 podman: Buildah allows arbitrary directory mount [fedora-all]
0
0
BZ#2318511 CVE-2024-9341 podman: FIPS Crypto-Policy Directory Mounting Issue in containers/common Go Library [fedora-40]
0
0
BZ#2318514 CVE-2024-9341 buildah: FIPS Crypto-Policy Directory Mounting Issue in containers/common Go Library [fedora-40]
0
0
BZ#2319017 CVE-2024-9676 buildah: symlink traversal vulnerability in the containers/storage library can cause Denial of Service (DoS) [fedora-all]
0
0
BZ#2319019 CVE-2024-9676 podman: symlink traversal vulnerability in the containers/storage library can cause Denial of Service (DoS) [fedora-all]
0
0

Automated Test Results