Summary: | <app-containers/buildah-1.25.1: containers started with non-empty inheritable capabilities | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | John Helmert III <ajak> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | minor | CC: | zmedico |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://github.com/containers/buildah/security/advisories/GHSA-c3g4-w6cv-6v7h | ||
Whiteboard: | B4 [glsa?] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 836966 | ||
Bug Blocks: |
Description
John Helmert III
2022-04-05 14:15:55 UTC
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=c02c4bcb593825d12d89aae1b7a94e55c953f5e2 commit c02c4bcb593825d12d89aae1b7a94e55c953f5e2 Author: Zac Medico <zmedico@gentoo.org> AuthorDate: 2022-04-06 00:49:23 +0000 Commit: Zac Medico <zmedico@gentoo.org> CommitDate: 2022-04-06 00:49:32 +0000 app-containers/buildah: add 1.25.1 Bug: https://bugs.gentoo.org/836840 Signed-off-by: Zac Medico <zmedico@gentoo.org> app-containers/buildah/Manifest | 1 + app-containers/buildah/buildah-1.25.1.ebuild | 51 ++++++++++++++++++++++++++++ 2 files changed, 52 insertions(+) Thanks! Please stable when ready. Please cleanup The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=d0cbe38451f71d1a5445958c44cba3906f4c1b9b commit d0cbe38451f71d1a5445958c44cba3906f4c1b9b Author: Zac Medico <zmedico@gentoo.org> AuthorDate: 2022-04-11 03:41:59 +0000 Commit: Zac Medico <zmedico@gentoo.org> CommitDate: 2022-04-11 03:42:04 +0000 app-containers/buildah: drop vulnerable versions Bug: https://bugs.gentoo.org/836840 Signed-off-by: Zac Medico <zmedico@gentoo.org> app-containers/buildah/Manifest | 3 -- app-containers/buildah/buildah-1.23.1-r1.ebuild | 51 ------------------------- app-containers/buildah/buildah-1.24.2.ebuild | 51 ------------------------- app-containers/buildah/buildah-1.24.3.ebuild | 51 ------------------------- 4 files changed, 156 deletions(-) Thanks! Relatively low impact so no GLSA. All done! |