[FEDORA-2022-ba365d3703] Fedora 36: apptainer, asciigraph, buildah, butane, cheat & 54 more

Severity Critical
Affected Packages 59
CVEs 6

Rebuilt for CVE-2022-1996, CVE-2022-24675, CVE-2022-28327, CVE-2022-27191,
CVE-2022-29526, CVE-2022-30629. ---- osbuilder: Fix wrong config setting

Package Affected Version
pkg:rpm/fedora/xe-guest-utilities-latest?distro=fedora-36 < 7.30.0.4.fc36
pkg:rpm/fedora/skopeo?distro=fedora-36 < 1.8.0.9.fc36
pkg:rpm/fedora/singularity?distro=fedora-36 < 3.8.7.2.fc36
pkg:rpm/fedora/runc?distro=fedora-36 < 1.1.1.2.fc36
pkg:rpm/fedora/restic?distro=fedora-36 < 0.12.1.3.fc36
pkg:rpm/fedora/reposurgeon?distro=fedora-36 < 4.32.2.fc36
pkg:rpm/fedora/podman?distro=fedora-36 < 4.1.1.2.fc36
pkg:rpm/fedora/pack?distro=fedora-36 < 0.27.0~rc1.4.fc36
pkg:rpm/fedora/osbuild-composer?distro=fedora-36 < 55.2.fc36
pkg:rpm/fedora/origin?distro=fedora-36 < 3.11.2.6.fc36
pkg:rpm/fedora/oci-seccomp-bpf-hook?distro=fedora-36 < 1.2.5.3.fc36
pkg:rpm/fedora/manifest-tool?distro=fedora-36 < 2.0.3.2.fc36
pkg:rpm/fedora/kompose?distro=fedora-36 < 1.17.0.9.fc36
pkg:rpm/fedora/kata-containers?distro=fedora-36 < 2.3.3.2.fc36.1
pkg:rpm/fedora/ignition?distro=fedora-36 < 2.14.0.2.fc36
pkg:rpm/fedora/gron?distro=fedora-36 < 0.7.1.2.fc36
pkg:rpm/fedora/grafana?distro=fedora-36 < 7.5.15.3.fc36
pkg:rpm/fedora/grafana-pcp?distro=fedora-36 < 3.2.0.3.fc36
pkg:rpm/fedora/gotun?distro=fedora-36 < 0.0.14.gita9dbe4d.fc36
pkg:rpm/fedora/google-guest-agent?distro=fedora-36 < 20201217.02.4.fc36
pkg:rpm/fedora/gomtree?distro=fedora-36 < 0.4.0.11.fc36
pkg:rpm/fedora/golang?distro=fedora-36 < 1.18.3.2.fc36
pkg:rpm/fedora/golang-starlark?distro=fedora-36 < 0.0.7.20210113gite81fc95.fc36
pkg:rpm/fedora/golang-rsc-pdf?distro=fedora-36 < 0.1.1.10.fc36
pkg:rpm/fedora/golang-github-zyedidia-highlight?distro=fedora-36 < 0.0.6.20200218git291680f.fc36
pkg:rpm/fedora/golang-github-tscholl2-siec?distro=fedora-36 < 0.3.20211128git9bdfc48.fc36
pkg:rpm/fedora/golang-github-tomnomnom-xtermcolor?distro=fedora-36 < 0.1.2.8.fc36
pkg:rpm/fedora/golang-github-sqshq-sampler?distro=fedora-36 < 1.1.0.9.fc36
pkg:rpm/fedora/golang-github-segmentio-ksuid?distro=fedora-36 < 1.0.4.3.fc36
pkg:rpm/fedora/golang-github-rickb777-date?distro=fedora-36 < 1.19.1.2.fc36
pkg:rpm/fedora/golang-github-msprev-fzf-bibtex?distro=fedora-36 < 1.1.5.20220205gitd5df2c6.fc36
pkg:rpm/fedora/golang-github-mozillazg-pinyin?distro=fedora-36 < 0.19.0.4.fc36
pkg:rpm/fedora/golang-github-mbndr-figlet4go?distro=fedora-36 < 0.0.8.20191009gitd6cef5b.fc36
pkg:rpm/fedora/golang-github-lunixbochs-vtclean?distro=fedora-36 < 1.0.0.8.fc36
pkg:rpm/fedora/golang-github-lofanmi-pinyin?distro=fedora-36 < 1.0.4.fc36
pkg:rpm/fedora/golang-github-letsencrypt-pebble?distro=fedora-36 < 2.3.1.5.fc36
pkg:rpm/fedora/golang-github-kalafut-imohash?distro=fedora-36 < 1.0.2.3.fc36
pkg:rpm/fedora/golang-github-heistp-irtt?distro=fedora-36 < 0.9.1.2.fc36
pkg:rpm/fedora/golang-github-google-dap?distro=fedora-36 < 0.4.0.4.fc36
pkg:rpm/fedora/golang-github-elves-elvish?distro=fedora-36 < 0.15.0.4.fc36
pkg:rpm/fedora/golang-github-client9-gospell?distro=fedora-36 < 0.0.11.20190524git90dfc71.fc36
pkg:rpm/fedora/golang-github-chromedp?distro=fedora-36 < 0.8.1.2.fc36
pkg:rpm/fedora/golang-entgo-ent?distro=fedora-36 < 0.10.0.4.fc36
pkg:rpm/fedora/golang-ariga-atlas?distro=fedora-36 < 0.3.6.3.fc36
pkg:rpm/fedora/godep?distro=fedora-36 < 62.17.fc36
pkg:rpm/fedora/go-bindata?distro=fedora-36 < 3.0.7.22.gita0ff256.fc36
pkg:rpm/fedora/gmailctl?distro=fedora-36 < 0.10.4.3.fc36
pkg:rpm/fedora/git-octopus?distro=fedora-36 < 2.0.0.4.beta.3.fc36.12
pkg:rpm/fedora/git-lfs?distro=fedora-36 < 3.1.2.4.fc36
pkg:rpm/fedora/docker-distribution?distro=fedora-36 < 2.6.2.17.git48294d9.fc36
pkg:rpm/fedora/deepin-gir-generator?distro=fedora-36 < 2.1.0.3.fc36
pkg:rpm/fedora/cri-o?distro=fedora-36 < 1.24.1.2.fc36
pkg:rpm/fedora/clipman?distro=fedora-36 < 1.6.1.3.fc36
pkg:rpm/fedora/cheat?distro=fedora-36 < 4.2.2.4.fc36
pkg:rpm/fedora/caddy?distro=fedora-36 < 2.4.6.3.fc36
pkg:rpm/fedora/butane?distro=fedora-36 < 0.14.0.2.fc36
pkg:rpm/fedora/buildah?distro=fedora-36 < 1.26.1.4.fc36
pkg:rpm/fedora/asciigraph?distro=fedora-36 < 0.5.5.2.fc36
pkg:rpm/fedora/apptainer?distro=fedora-36 < 1.0.2.2.fc36
ID
FEDORA-2022-ba365d3703
Severity
critical
Severity from
CVE-2022-1996
URL
https://bodhi.fedoraproject.org/updates/FEDORA-2022-ba365d3703
Published
2022-07-13T02:00:07
(2 years ago)
Modified
2022-07-13T02:00:07
(2 years ago)
Rights
Copyright 2022 Red Hat, Inc.
Other Advisories
Source # ID Name URL
Bugzilla 2097377 Bug #2097377 - kata-containers-2.3.2-2.fc36.x86_64 errors during package installation https://bugzilla.redhat.com/show_bug.cgi?id=2097377
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/xe-guest-utilities-latest?distro=fedora-36 fedora xe-guest-utilities-latest < 7.30.0.4.fc36 fedora-36
Affected pkg:rpm/fedora/skopeo?distro=fedora-36 fedora skopeo < 1.8.0.9.fc36 fedora-36
Affected pkg:rpm/fedora/singularity?distro=fedora-36 fedora singularity < 3.8.7.2.fc36 fedora-36
Affected pkg:rpm/fedora/runc?distro=fedora-36 fedora runc < 1.1.1.2.fc36 fedora-36
Affected pkg:rpm/fedora/restic?distro=fedora-36 fedora restic < 0.12.1.3.fc36 fedora-36
Affected pkg:rpm/fedora/reposurgeon?distro=fedora-36 fedora reposurgeon < 4.32.2.fc36 fedora-36
Affected pkg:rpm/fedora/podman?distro=fedora-36 fedora podman < 4.1.1.2.fc36 fedora-36
Affected pkg:rpm/fedora/pack?distro=fedora-36 fedora pack < 0.27.0~rc1.4.fc36 fedora-36
Affected pkg:rpm/fedora/osbuild-composer?distro=fedora-36 fedora osbuild-composer < 55.2.fc36 fedora-36
Affected pkg:rpm/fedora/origin?distro=fedora-36 fedora origin < 3.11.2.6.fc36 fedora-36
Affected pkg:rpm/fedora/oci-seccomp-bpf-hook?distro=fedora-36 fedora oci-seccomp-bpf-hook < 1.2.5.3.fc36 fedora-36
Affected pkg:rpm/fedora/manifest-tool?distro=fedora-36 fedora manifest-tool < 2.0.3.2.fc36 fedora-36
Affected pkg:rpm/fedora/kompose?distro=fedora-36 fedora kompose < 1.17.0.9.fc36 fedora-36
Affected pkg:rpm/fedora/kata-containers?distro=fedora-36 fedora kata-containers < 2.3.3.2.fc36.1 fedora-36
Affected pkg:rpm/fedora/ignition?distro=fedora-36 fedora ignition < 2.14.0.2.fc36 fedora-36
Affected pkg:rpm/fedora/gron?distro=fedora-36 fedora gron < 0.7.1.2.fc36 fedora-36
Affected pkg:rpm/fedora/grafana?distro=fedora-36 fedora grafana < 7.5.15.3.fc36 fedora-36
Affected pkg:rpm/fedora/grafana-pcp?distro=fedora-36 fedora grafana-pcp < 3.2.0.3.fc36 fedora-36
Affected pkg:rpm/fedora/gotun?distro=fedora-36 fedora gotun < 0.0.14.gita9dbe4d.fc36 fedora-36
Affected pkg:rpm/fedora/google-guest-agent?distro=fedora-36 fedora google-guest-agent < 20201217.02.4.fc36 fedora-36
Affected pkg:rpm/fedora/gomtree?distro=fedora-36 fedora gomtree < 0.4.0.11.fc36 fedora-36
Affected pkg:rpm/fedora/golang?distro=fedora-36 fedora golang < 1.18.3.2.fc36 fedora-36
Affected pkg:rpm/fedora/golang-starlark?distro=fedora-36 fedora golang-starlark < 0.0.7.20210113gite81fc95.fc36 fedora-36
Affected pkg:rpm/fedora/golang-rsc-pdf?distro=fedora-36 fedora golang-rsc-pdf < 0.1.1.10.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-zyedidia-highlight?distro=fedora-36 fedora golang-github-zyedidia-highlight < 0.0.6.20200218git291680f.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-tscholl2-siec?distro=fedora-36 fedora golang-github-tscholl2-siec < 0.3.20211128git9bdfc48.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-tomnomnom-xtermcolor?distro=fedora-36 fedora golang-github-tomnomnom-xtermcolor < 0.1.2.8.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-sqshq-sampler?distro=fedora-36 fedora golang-github-sqshq-sampler < 1.1.0.9.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-segmentio-ksuid?distro=fedora-36 fedora golang-github-segmentio-ksuid < 1.0.4.3.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-rickb777-date?distro=fedora-36 fedora golang-github-rickb777-date < 1.19.1.2.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-msprev-fzf-bibtex?distro=fedora-36 fedora golang-github-msprev-fzf-bibtex < 1.1.5.20220205gitd5df2c6.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-mozillazg-pinyin?distro=fedora-36 fedora golang-github-mozillazg-pinyin < 0.19.0.4.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-mbndr-figlet4go?distro=fedora-36 fedora golang-github-mbndr-figlet4go < 0.0.8.20191009gitd6cef5b.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-lunixbochs-vtclean?distro=fedora-36 fedora golang-github-lunixbochs-vtclean < 1.0.0.8.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-lofanmi-pinyin?distro=fedora-36 fedora golang-github-lofanmi-pinyin < 1.0.4.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-letsencrypt-pebble?distro=fedora-36 fedora golang-github-letsencrypt-pebble < 2.3.1.5.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-kalafut-imohash?distro=fedora-36 fedora golang-github-kalafut-imohash < 1.0.2.3.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-heistp-irtt?distro=fedora-36 fedora golang-github-heistp-irtt < 0.9.1.2.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-google-dap?distro=fedora-36 fedora golang-github-google-dap < 0.4.0.4.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-elves-elvish?distro=fedora-36 fedora golang-github-elves-elvish < 0.15.0.4.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-client9-gospell?distro=fedora-36 fedora golang-github-client9-gospell < 0.0.11.20190524git90dfc71.fc36 fedora-36
Affected pkg:rpm/fedora/golang-github-chromedp?distro=fedora-36 fedora golang-github-chromedp < 0.8.1.2.fc36 fedora-36
Affected pkg:rpm/fedora/golang-entgo-ent?distro=fedora-36 fedora golang-entgo-ent < 0.10.0.4.fc36 fedora-36
Affected pkg:rpm/fedora/golang-ariga-atlas?distro=fedora-36 fedora golang-ariga-atlas < 0.3.6.3.fc36 fedora-36
Affected pkg:rpm/fedora/godep?distro=fedora-36 fedora godep < 62.17.fc36 fedora-36
Affected pkg:rpm/fedora/go-bindata?distro=fedora-36 fedora go-bindata < 3.0.7.22.gita0ff256.fc36 fedora-36
Affected pkg:rpm/fedora/gmailctl?distro=fedora-36 fedora gmailctl < 0.10.4.3.fc36 fedora-36
Affected pkg:rpm/fedora/git-octopus?distro=fedora-36 fedora git-octopus < 2.0.0.4.beta.3.fc36.12 fedora-36
Affected pkg:rpm/fedora/git-lfs?distro=fedora-36 fedora git-lfs < 3.1.2.4.fc36 fedora-36
Affected pkg:rpm/fedora/docker-distribution?distro=fedora-36 fedora docker-distribution < 2.6.2.17.git48294d9.fc36 fedora-36
Affected pkg:rpm/fedora/deepin-gir-generator?distro=fedora-36 fedora deepin-gir-generator < 2.1.0.3.fc36 fedora-36
Affected pkg:rpm/fedora/cri-o?distro=fedora-36 fedora cri-o < 1.24.1.2.fc36 fedora-36
Affected pkg:rpm/fedora/clipman?distro=fedora-36 fedora clipman < 1.6.1.3.fc36 fedora-36
Affected pkg:rpm/fedora/cheat?distro=fedora-36 fedora cheat < 4.2.2.4.fc36 fedora-36
Affected pkg:rpm/fedora/caddy?distro=fedora-36 fedora caddy < 2.4.6.3.fc36 fedora-36
Affected pkg:rpm/fedora/butane?distro=fedora-36 fedora butane < 0.14.0.2.fc36 fedora-36
Affected pkg:rpm/fedora/buildah?distro=fedora-36 fedora buildah < 1.26.1.4.fc36 fedora-36
Affected pkg:rpm/fedora/asciigraph?distro=fedora-36 fedora asciigraph < 0.5.5.2.fc36 fedora-36
Affected pkg:rpm/fedora/apptainer?distro=fedora-36 fedora apptainer < 1.0.2.2.fc36 fedora-36
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...