CVE-2022-2739

CVSS v3.1 5.3 (Medium)
53% Progress
EPSS 0.06 % (28th)
0.06% Progress
Affected Products 3
Advisories 1

The version of podman as released for Red Hat Enterprise Linux 7 Extras via RHSA-2022:2190 advisory included an incorrect version of podman missing the fix for CVE-2020-14370, which was previously fixed via RHSA-2020:5056. This issue could possibly allow an attacker to gain access to sensitive information stored in environment variables.

Weaknesses
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
CWE-312
Cleartext Storage of Sensitive Information
Related CVEs
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2022-09-01 21:15:09
(2 years ago)
Updated Date
2023-07-21 16:38:31
(14 months ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Redhat Enterprise Linux Server 7.0 cpe:2.3:o:redhat:enterprise_linux_server:7.0
  Redhat Enterprise Linux Workstation 7.0 cpe:2.3:o:redhat:enterprise_linux_workstation:7.0

Configuration #2

    CPE23 From Up To
  Podman Project Podman 1.6.4-32.el7 9 cpe:2.3:a:podman_project:podman:1.6.4-32.el7_9
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...