[ALPINE:CVE-2024-3727] buildah, skopeo, podman vulnerability
Severity
High
Fixed Packages
48
CVEs
1
[From CVE-2024-3727] A flaw was found in the github.com/containers/image library. This flaw allows attackers to trigger unexpected authenticated registry accesses on behalf of a victim user, causing resource exhaustion, local path traversal, and other attacks.
- ID
- ALPINE:CVE-2024-3727
- Severity
- high
- Severity from
- CVE-2024-3727
- URL
- https://security.alpinelinux.org/vuln/CVE-2024-3727
- Published
-
2024-05-14T15:42:07
(4 months ago) - Modified
-
2024-05-14T15:42:07
(4 months ago) - Rights
- Alpine Linux Security Team
- Other Advisories
-
- ALSA-2024:5258
- ELSA-2024-5258
- FEDORA-2024-1bae1999ba
- FEDORA-2024-20393c122f
- FEDORA-2024-2f8a62d6d6
- FEDORA-2024-500c653b4c
- FEDORA-2024-77a0ab280f
- FEDORA-2024-c56e6ff1b5
- FEDORA-2024-c95d3199c5
- FEDORA-2024-e383f723a9
- FEDORA-2024-f4a65623e7
- GO-2024-2842
- RHSA-2024:5258
- SUSE-SU-2024:1838-1
- SUSE-SU-2024:1987-1
- SUSE-SU-2024:1987-2
- SUSE-SU-2024:1988-1
- SUSE-SU-2024:1989-1
- SUSE-SU-2024:2031-1
- SUSE-SU-2024:2050-1
- SUSE-SU-2024:2050-2
- SUSE-SU-2024:2090-1
- SUSE-SU-2024:2383-1
- SUSE-SU-2024:2548-1
- SUSE-SU-2024:3120-1
- SUSE-SU-2024:3151-1
- SUSE-SU-2024:3186-1
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Fixed | pkg:apk/alpine/skopeo?arch=x86_64&distro=alpine-edge | alpine | skopeo | = 1.15.1-r0 | alpine-edge | x86_64 | |
Fixed | pkg:apk/alpine/skopeo?arch=x86_64&distro=alpine-3.20 | alpine | skopeo | = 1.15.1-r0 | alpine-3.20 | x86_64 | |
Fixed | pkg:apk/alpine/skopeo?arch=x86&distro=alpine-edge | alpine | skopeo | = 1.15.1-r0 | alpine-edge | x86 | |
Fixed | pkg:apk/alpine/skopeo?arch=x86&distro=alpine-3.20 | alpine | skopeo | = 1.15.1-r0 | alpine-3.20 | x86 | |
Fixed | pkg:apk/alpine/skopeo?arch=s390x&distro=alpine-edge | alpine | skopeo | = 1.15.1-r0 | alpine-edge | s390x | |
Fixed | pkg:apk/alpine/skopeo?arch=s390x&distro=alpine-3.20 | alpine | skopeo | = 1.15.1-r0 | alpine-3.20 | s390x | |
Fixed | pkg:apk/alpine/skopeo?arch=riscv64&distro=alpine-edge | alpine | skopeo | = 1.15.1-r0 | alpine-edge | riscv64 | |
Fixed | pkg:apk/alpine/skopeo?arch=riscv64&distro=alpine-3.20 | alpine | skopeo | = 1.15.1-r0 | alpine-3.20 | riscv64 | |
Fixed | pkg:apk/alpine/skopeo?arch=ppc64le&distro=alpine-edge | alpine | skopeo | = 1.15.1-r0 | alpine-edge | ppc64le | |
Fixed | pkg:apk/alpine/skopeo?arch=ppc64le&distro=alpine-3.20 | alpine | skopeo | = 1.15.1-r0 | alpine-3.20 | ppc64le | |
Fixed | pkg:apk/alpine/skopeo?arch=armv7&distro=alpine-edge | alpine | skopeo | = 1.15.1-r0 | alpine-edge | armv7 | |
Fixed | pkg:apk/alpine/skopeo?arch=armv7&distro=alpine-3.20 | alpine | skopeo | = 1.15.1-r0 | alpine-3.20 | armv7 | |
Fixed | pkg:apk/alpine/skopeo?arch=armhf&distro=alpine-edge | alpine | skopeo | = 1.15.1-r0 | alpine-edge | armhf | |
Fixed | pkg:apk/alpine/skopeo?arch=armhf&distro=alpine-3.20 | alpine | skopeo | = 1.15.1-r0 | alpine-3.20 | armhf | |
Fixed | pkg:apk/alpine/skopeo?arch=aarch64&distro=alpine-edge | alpine | skopeo | = 1.15.1-r0 | alpine-edge | aarch64 | |
Fixed | pkg:apk/alpine/skopeo?arch=aarch64&distro=alpine-3.20 | alpine | skopeo | = 1.15.1-r0 | alpine-3.20 | aarch64 | |
Fixed | pkg:apk/alpine/podman?arch=x86_64&distro=alpine-edge | alpine | podman | = 5.0.3-r0 | alpine-edge | x86_64 | |
Fixed | pkg:apk/alpine/podman?arch=x86_64&distro=alpine-3.20 | alpine | podman | = 5.0.3-r0 | alpine-3.20 | x86_64 | |
Fixed | pkg:apk/alpine/podman?arch=x86&distro=alpine-edge | alpine | podman | = 5.0.3-r0 | alpine-edge | x86 | |
Fixed | pkg:apk/alpine/podman?arch=x86&distro=alpine-3.20 | alpine | podman | = 5.0.3-r0 | alpine-3.20 | x86 | |
Fixed | pkg:apk/alpine/podman?arch=s390x&distro=alpine-edge | alpine | podman | = 5.0.3-r0 | alpine-edge | s390x | |
Fixed | pkg:apk/alpine/podman?arch=s390x&distro=alpine-3.20 | alpine | podman | = 5.0.3-r0 | alpine-3.20 | s390x | |
Fixed | pkg:apk/alpine/podman?arch=riscv64&distro=alpine-edge | alpine | podman | = 5.0.3-r0 | alpine-edge | riscv64 | |
Fixed | pkg:apk/alpine/podman?arch=riscv64&distro=alpine-3.20 | alpine | podman | = 5.0.3-r0 | alpine-3.20 | riscv64 | |
Fixed | pkg:apk/alpine/podman?arch=ppc64le&distro=alpine-edge | alpine | podman | = 5.0.3-r0 | alpine-edge | ppc64le | |
Fixed | pkg:apk/alpine/podman?arch=ppc64le&distro=alpine-3.20 | alpine | podman | = 5.0.3-r0 | alpine-3.20 | ppc64le | |
Fixed | pkg:apk/alpine/podman?arch=armv7&distro=alpine-edge | alpine | podman | = 5.0.3-r0 | alpine-edge | armv7 | |
Fixed | pkg:apk/alpine/podman?arch=armv7&distro=alpine-3.20 | alpine | podman | = 5.0.3-r0 | alpine-3.20 | armv7 | |
Fixed | pkg:apk/alpine/podman?arch=armhf&distro=alpine-edge | alpine | podman | = 5.0.3-r0 | alpine-edge | armhf | |
Fixed | pkg:apk/alpine/podman?arch=armhf&distro=alpine-3.20 | alpine | podman | = 5.0.3-r0 | alpine-3.20 | armhf | |
Fixed | pkg:apk/alpine/podman?arch=aarch64&distro=alpine-edge | alpine | podman | = 5.0.3-r0 | alpine-edge | aarch64 | |
Fixed | pkg:apk/alpine/podman?arch=aarch64&distro=alpine-3.20 | alpine | podman | = 5.0.3-r0 | alpine-3.20 | aarch64 | |
Fixed | pkg:apk/alpine/buildah?arch=x86_64&distro=alpine-edge | alpine | buildah | = 1.35.4-r0 | alpine-edge | x86_64 | |
Fixed | pkg:apk/alpine/buildah?arch=x86_64&distro=alpine-3.20 | alpine | buildah | = 1.35.4-r0 | alpine-3.20 | x86_64 | |
Fixed | pkg:apk/alpine/buildah?arch=x86&distro=alpine-edge | alpine | buildah | = 1.35.4-r0 | alpine-edge | x86 | |
Fixed | pkg:apk/alpine/buildah?arch=x86&distro=alpine-3.20 | alpine | buildah | = 1.35.4-r0 | alpine-3.20 | x86 | |
Fixed | pkg:apk/alpine/buildah?arch=s390x&distro=alpine-edge | alpine | buildah | = 1.35.4-r0 | alpine-edge | s390x | |
Fixed | pkg:apk/alpine/buildah?arch=s390x&distro=alpine-3.20 | alpine | buildah | = 1.35.4-r0 | alpine-3.20 | s390x | |
Fixed | pkg:apk/alpine/buildah?arch=riscv64&distro=alpine-edge | alpine | buildah | = 1.35.4-r0 | alpine-edge | riscv64 | |
Fixed | pkg:apk/alpine/buildah?arch=riscv64&distro=alpine-3.20 | alpine | buildah | = 1.35.4-r0 | alpine-3.20 | riscv64 | |
Fixed | pkg:apk/alpine/buildah?arch=ppc64le&distro=alpine-edge | alpine | buildah | = 1.35.4-r0 | alpine-edge | ppc64le | |
Fixed | pkg:apk/alpine/buildah?arch=ppc64le&distro=alpine-3.20 | alpine | buildah | = 1.35.4-r0 | alpine-3.20 | ppc64le | |
Fixed | pkg:apk/alpine/buildah?arch=armv7&distro=alpine-edge | alpine | buildah | = 1.35.4-r0 | alpine-edge | armv7 | |
Fixed | pkg:apk/alpine/buildah?arch=armv7&distro=alpine-3.20 | alpine | buildah | = 1.35.4-r0 | alpine-3.20 | armv7 | |
Fixed | pkg:apk/alpine/buildah?arch=armhf&distro=alpine-edge | alpine | buildah | = 1.35.4-r0 | alpine-edge | armhf | |
Fixed | pkg:apk/alpine/buildah?arch=armhf&distro=alpine-3.20 | alpine | buildah | = 1.35.4-r0 | alpine-3.20 | armhf | |
Fixed | pkg:apk/alpine/buildah?arch=aarch64&distro=alpine-edge | alpine | buildah | = 1.35.4-r0 | alpine-edge | aarch64 | |
Fixed | pkg:apk/alpine/buildah?arch=aarch64&distro=alpine-3.20 | alpine | buildah | = 1.35.4-r0 | alpine-3.20 | aarch64 |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |