[ELSA-2021-2371] container-tools:ol8 security update

Severity Important
Affected Packages 26
CVEs 1

buildah
[1.19.7-2.0.1]
- Fixes troubles with oracle registry login [Orabug: 29937283]

[1.19.7-2]
- revert changes to the state of 3.0-8.4.0
- Related: #1954702

conmon
[2:2.0.26-3]
- fix 'Permission on /dev/null are changing from 666 to 777 after running podman as root [rhel-8.4.0.z]'
- Resolves: #1961682

[2:2.0.26-2]
- revert back to the state of 3.0-8.4.0
- Related: #1954702

container-selinux
[2:2.162.0-1]
- update to https://github.com/containers/container-selinux/releases/tag/v2.162.0
- Related: #1954702

[2:2.161.1-2]
- do not use lockdown class yet - it is not available in RHEL
- Related: #1954702

[2:2.161.1-1]
- update to https://github.com/containers/container-selinux/releases/tag/v2.161.1
- Related: #1954702

[2:2.160.2-1]
- update to
https://github.com/containers/container-selinux/releases/tag/v2.160.2
- Related: #1954702

crun
[0.18-2]
- revert back to the state of 3.0-8.4.0
- Related: #1954702

fuse-overlayfs
[1.4.0-3]
- revert back to the state of 3.0-8.4.0
- Related: #1954702

podman
[3.0.1-7.0.1]
- Handling redirect from the docker registry Orabug: 29874238

[3.0.1-7]
- revert back to the state of 3.0-8.4.0
- Related: #1954702

runc
[1.0.0-73.rc93]
- fix 'podman run --pid=host command causes OCI permission error'
- Related: #1954702

[1.0.0-72.rc93]
- fix CVE-2021-30465
- Related: #1954702

[1.0.0-71.rc93]
- upload rc93 tarball
- Related: #1954702

skopeo
[1:1.2.2-10.0.1]
- Handling redirect from the docker registry Orabug: 29874238
- Add oracle registry into the conf file [Orabug: 29845934 31306708]

[1:1.2.2-10]
- re-enable release-1.2 branch
- Related: #1954702

Package Affected Version
pkg:rpm/oraclelinux/udica?distro=oraclelinux-8.4 < 0.2.4-1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/slirp4netns?distro=oraclelinux-8.4 < 1.1.8-1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/skopeo?distro=oraclelinux-8.4 < 1.2.2-10.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/skopeo-tests?distro=oraclelinux-8.4 < 1.2.2-10.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/runc?distro=oraclelinux-8.4 < 1.0.0-73.rc93.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/python3-criu?distro=oraclelinux-8.4 < 3.15-1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/podman?distro=oraclelinux-8.4 < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/podman-tests?distro=oraclelinux-8.4 < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/podman-remote?distro=oraclelinux-8.4 < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/podman-plugins?distro=oraclelinux-8.4 < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/podman-docker?distro=oraclelinux-8.4 < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/podman-catatonit?distro=oraclelinux-8.4 < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/oci-seccomp-bpf-hook?distro=oraclelinux-8.4 < 1.2.0-2.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/libslirp?distro=oraclelinux-8.4 < 4.3.1-1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/libslirp-devel?distro=oraclelinux-8.4 < 4.3.1-1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/fuse-overlayfs?distro=oraclelinux-8.4 < 1.4.0-3.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/crun?distro=oraclelinux-8.4 < 0.18-2.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/criu?distro=oraclelinux-8.4 < 3.15-1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/crit?distro=oraclelinux-8.4 < 3.15-1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/containers-common?distro=oraclelinux-8.4 < 1.2.2-10.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/containernetworking-plugins?distro=oraclelinux-8.4 < 0.9.1-1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/container-selinux?distro=oraclelinux-8.4 < 2.162.0-1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/conmon?distro=oraclelinux-8.4 < 2.0.26-3.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/cockpit-podman?distro=oraclelinux-8.4 < 29-2.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/buildah?distro=oraclelinux-8.4 < 1.19.7-2.0.1.module+el8.4.0+20195+0a4a4953
pkg:rpm/oraclelinux/buildah-tests?distro=oraclelinux-8.4 < 1.19.7-2.0.1.module+el8.4.0+20195+0a4a4953
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/udica?distro=oraclelinux-8.4 oraclelinux udica < 0.2.4-1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/slirp4netns?distro=oraclelinux-8.4 oraclelinux slirp4netns < 1.1.8-1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/skopeo?distro=oraclelinux-8.4 oraclelinux skopeo < 1.2.2-10.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/skopeo-tests?distro=oraclelinux-8.4 oraclelinux skopeo-tests < 1.2.2-10.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/runc?distro=oraclelinux-8.4 oraclelinux runc < 1.0.0-73.rc93.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/python3-criu?distro=oraclelinux-8.4 oraclelinux python3-criu < 3.15-1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/podman?distro=oraclelinux-8.4 oraclelinux podman < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/podman-tests?distro=oraclelinux-8.4 oraclelinux podman-tests < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/podman-remote?distro=oraclelinux-8.4 oraclelinux podman-remote < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/podman-plugins?distro=oraclelinux-8.4 oraclelinux podman-plugins < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/podman-docker?distro=oraclelinux-8.4 oraclelinux podman-docker < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/podman-catatonit?distro=oraclelinux-8.4 oraclelinux podman-catatonit < 3.0.1-7.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/oci-seccomp-bpf-hook?distro=oraclelinux-8.4 oraclelinux oci-seccomp-bpf-hook < 1.2.0-2.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/libslirp?distro=oraclelinux-8.4 oraclelinux libslirp < 4.3.1-1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/libslirp-devel?distro=oraclelinux-8.4 oraclelinux libslirp-devel < 4.3.1-1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/fuse-overlayfs?distro=oraclelinux-8.4 oraclelinux fuse-overlayfs < 1.4.0-3.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/crun?distro=oraclelinux-8.4 oraclelinux crun < 0.18-2.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/criu?distro=oraclelinux-8.4 oraclelinux criu < 3.15-1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/crit?distro=oraclelinux-8.4 oraclelinux crit < 3.15-1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/containers-common?distro=oraclelinux-8.4 oraclelinux containers-common < 1.2.2-10.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/containernetworking-plugins?distro=oraclelinux-8.4 oraclelinux containernetworking-plugins < 0.9.1-1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/container-selinux?distro=oraclelinux-8.4 oraclelinux container-selinux < 2.162.0-1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/conmon?distro=oraclelinux-8.4 oraclelinux conmon < 2.0.26-3.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/cockpit-podman?distro=oraclelinux-8.4 oraclelinux cockpit-podman < 29-2.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/buildah?distro=oraclelinux-8.4 oraclelinux buildah < 1.19.7-2.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
Affected pkg:rpm/oraclelinux/buildah-tests?distro=oraclelinux-8.4 oraclelinux buildah-tests < 1.19.7-2.0.1.module+el8.4.0+20195+0a4a4953 oraclelinux-8.4
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...