[openSUSE-SU-2022:0334-1] Security update for containerd, docker

Severity Moderate
Affected Packages 26
CVEs 5

Security update for containerd, docker

This update for containerd, docker fixes the following issues:

  • CVE-2021-41089: Fixed 'cp' can chmod host files (bsc#1191015).
  • CVE-2021-41091: Fixed flaw that could lead to data directory traversal in moby (bsc#1191434).
  • CVE-2021-41092: Fixed exposed user credentials with a misconfigured configuration file (bsc#1191334).
  • CVE-2021-41103: Fixed file access to local users in containerd (bsc#1191121).
  • CVE-2021-41190: Fixed OCI manifest and index parsing confusion (bsc#1193273).
Package Affected Version
pkg:rpm/opensuse/docker?arch=x86_64&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker?arch=s390x&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker?arch=ppc64le&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker?arch=aarch64&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-zsh-completion?arch=noarch&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic?arch=x86_64&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic?arch=s390x&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic?arch=ppc64le&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic?arch=aarch64&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic-zsh-completion?arch=noarch&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic-kubeadm-criconfig?arch=x86_64&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic-kubeadm-criconfig?arch=s390x&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic-kubeadm-criconfig?arch=ppc64le&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic-kubeadm-criconfig?arch=aarch64&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic-fish-completion?arch=noarch&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-kubic-bash-completion?arch=noarch&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-fish-completion?arch=noarch&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/docker-bash-completion?arch=noarch&distro=opensuse-leap-15.3 < 20.10.12_ce-159.1
pkg:rpm/opensuse/containerd?arch=x86_64&distro=opensuse-leap-15.3 < 1.4.12-60.1
pkg:rpm/opensuse/containerd?arch=s390x&distro=opensuse-leap-15.3 < 1.4.12-60.1
pkg:rpm/opensuse/containerd?arch=ppc64le&distro=opensuse-leap-15.3 < 1.4.12-60.1
pkg:rpm/opensuse/containerd?arch=aarch64&distro=opensuse-leap-15.3 < 1.4.12-60.1
pkg:rpm/opensuse/containerd-ctr?arch=x86_64&distro=opensuse-leap-15.3 < 1.4.12-60.1
pkg:rpm/opensuse/containerd-ctr?arch=s390x&distro=opensuse-leap-15.3 < 1.4.12-60.1
pkg:rpm/opensuse/containerd-ctr?arch=ppc64le&distro=opensuse-leap-15.3 < 1.4.12-60.1
pkg:rpm/opensuse/containerd-ctr?arch=aarch64&distro=opensuse-leap-15.3 < 1.4.12-60.1
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/opensuse/docker?arch=x86_64&distro=opensuse-leap-15.3 opensuse docker < 20.10.12_ce-159.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/docker?arch=s390x&distro=opensuse-leap-15.3 opensuse docker < 20.10.12_ce-159.1 opensuse-leap-15.3 s390x
Affected pkg:rpm/opensuse/docker?arch=ppc64le&distro=opensuse-leap-15.3 opensuse docker < 20.10.12_ce-159.1 opensuse-leap-15.3 ppc64le
Affected pkg:rpm/opensuse/docker?arch=aarch64&distro=opensuse-leap-15.3 opensuse docker < 20.10.12_ce-159.1 opensuse-leap-15.3 aarch64
Affected pkg:rpm/opensuse/docker-zsh-completion?arch=noarch&distro=opensuse-leap-15.3 opensuse docker-zsh-completion < 20.10.12_ce-159.1 opensuse-leap-15.3 noarch
Affected pkg:rpm/opensuse/docker-kubic?arch=x86_64&distro=opensuse-leap-15.3 opensuse docker-kubic < 20.10.12_ce-159.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/docker-kubic?arch=s390x&distro=opensuse-leap-15.3 opensuse docker-kubic < 20.10.12_ce-159.1 opensuse-leap-15.3 s390x
Affected pkg:rpm/opensuse/docker-kubic?arch=ppc64le&distro=opensuse-leap-15.3 opensuse docker-kubic < 20.10.12_ce-159.1 opensuse-leap-15.3 ppc64le
Affected pkg:rpm/opensuse/docker-kubic?arch=aarch64&distro=opensuse-leap-15.3 opensuse docker-kubic < 20.10.12_ce-159.1 opensuse-leap-15.3 aarch64
Affected pkg:rpm/opensuse/docker-kubic-zsh-completion?arch=noarch&distro=opensuse-leap-15.3 opensuse docker-kubic-zsh-completion < 20.10.12_ce-159.1 opensuse-leap-15.3 noarch
Affected pkg:rpm/opensuse/docker-kubic-kubeadm-criconfig?arch=x86_64&distro=opensuse-leap-15.3 opensuse docker-kubic-kubeadm-criconfig < 20.10.12_ce-159.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/docker-kubic-kubeadm-criconfig?arch=s390x&distro=opensuse-leap-15.3 opensuse docker-kubic-kubeadm-criconfig < 20.10.12_ce-159.1 opensuse-leap-15.3 s390x
Affected pkg:rpm/opensuse/docker-kubic-kubeadm-criconfig?arch=ppc64le&distro=opensuse-leap-15.3 opensuse docker-kubic-kubeadm-criconfig < 20.10.12_ce-159.1 opensuse-leap-15.3 ppc64le
Affected pkg:rpm/opensuse/docker-kubic-kubeadm-criconfig?arch=aarch64&distro=opensuse-leap-15.3 opensuse docker-kubic-kubeadm-criconfig < 20.10.12_ce-159.1 opensuse-leap-15.3 aarch64
Affected pkg:rpm/opensuse/docker-kubic-fish-completion?arch=noarch&distro=opensuse-leap-15.3 opensuse docker-kubic-fish-completion < 20.10.12_ce-159.1 opensuse-leap-15.3 noarch
Affected pkg:rpm/opensuse/docker-kubic-bash-completion?arch=noarch&distro=opensuse-leap-15.3 opensuse docker-kubic-bash-completion < 20.10.12_ce-159.1 opensuse-leap-15.3 noarch
Affected pkg:rpm/opensuse/docker-fish-completion?arch=noarch&distro=opensuse-leap-15.3 opensuse docker-fish-completion < 20.10.12_ce-159.1 opensuse-leap-15.3 noarch
Affected pkg:rpm/opensuse/docker-bash-completion?arch=noarch&distro=opensuse-leap-15.3 opensuse docker-bash-completion < 20.10.12_ce-159.1 opensuse-leap-15.3 noarch
Affected pkg:rpm/opensuse/containerd?arch=x86_64&distro=opensuse-leap-15.3 opensuse containerd < 1.4.12-60.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/containerd?arch=s390x&distro=opensuse-leap-15.3 opensuse containerd < 1.4.12-60.1 opensuse-leap-15.3 s390x
Affected pkg:rpm/opensuse/containerd?arch=ppc64le&distro=opensuse-leap-15.3 opensuse containerd < 1.4.12-60.1 opensuse-leap-15.3 ppc64le
Affected pkg:rpm/opensuse/containerd?arch=aarch64&distro=opensuse-leap-15.3 opensuse containerd < 1.4.12-60.1 opensuse-leap-15.3 aarch64
Affected pkg:rpm/opensuse/containerd-ctr?arch=x86_64&distro=opensuse-leap-15.3 opensuse containerd-ctr < 1.4.12-60.1 opensuse-leap-15.3 x86_64
Affected pkg:rpm/opensuse/containerd-ctr?arch=s390x&distro=opensuse-leap-15.3 opensuse containerd-ctr < 1.4.12-60.1 opensuse-leap-15.3 s390x
Affected pkg:rpm/opensuse/containerd-ctr?arch=ppc64le&distro=opensuse-leap-15.3 opensuse containerd-ctr < 1.4.12-60.1 opensuse-leap-15.3 ppc64le
Affected pkg:rpm/opensuse/containerd-ctr?arch=aarch64&distro=opensuse-leap-15.3 opensuse containerd-ctr < 1.4.12-60.1 opensuse-leap-15.3 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...