[ELSA-2024-0121] container-tools:4.0 security update

Severity Moderate
Affected Packages 32
CVEs 9

buildah
[1:1.24.6-7]
- rebuild for CVE-2023-29406
- Related: #2176055

cockpit-podman
[46-1]
- update to https://github.com/cockpit-project/cockpit-podman/releases/tag/46
- Related: #2061390

conmon
[2:2.1.4-2]
- update to https://github.com/containers/conmon/releases/tag/v2.1.4
- Related: #2176055

containernetworking-plugins
[1:1.1.1-6]
- Rebuild with golang 1.20.6 or higher
- Related: Jira:RHEL-4507
- Related: Jira:RHEL-7442

containers-common
[1-38.0.1]
- Updated removed references Orabug: 33473101
- Adjust registries.conf (Nikita Gerasimov)
- remove references to RedHat registry (Nikita Gerasimov)

container-selinux
[2:2.205.0-3]
- fix build for stable module
- Related: #2176055

criu
[3.15-3]
- add Requires: criu-libs = %{version}-%{release} in criu-devel
- add gating tests
- Related: #1934415

crun
fuse-overlayfs
[1.9-2]
- update to https://github.com/containers/fuse-overlayfs/releases/tag/v1.9
- Related: #2176055

libslirp
oci-seccomp-bpf-hook
[1.2.5-2]
- fix compatibility with the new bcc
- Related: #2176055

podman
[2:4.0.2-25]
- rebuild with golang 1.20.6+ for CVE-2023-39321 CVE-2023-29409
- Related: Jira:RHEL-4508
- Related: Jira:RHEL-7443

python-podman
[4.0.0-2]
- bump to v4.0.0
- Related: #2176055

runc
[1:1.1.5-2]
- rebuild for following CVEs: CVE-2022-41724
- Resolves: #2179971

skopeo
[2:1.6.2-9]
- rebuild because of CVE-2023-29406
- Resolves: #2236831

slirp4netns
[1.1.8-3]
- fix gating - don't use insecure functions - thanks to Marc-Andre Lureau
- Related: #2176055

udica
[0.2.6-4]
- sync with stream-container-tools-4.0-rhel-8.8.0
- Related: #2176055

Package Affected Version
pkg:rpm/oraclelinux/udica?distro=oraclelinux-8.9 < 0.2.6-4.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/slirp4netns?distro=oraclelinux-8.9 < 1.1.8-3.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/skopeo?distro=oraclelinux-8.9 < 1.6.2-9.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/skopeo-tests?distro=oraclelinux-8.9 < 1.6.2-9.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/runc?distro=oraclelinux-8.9 < 1.1.5-2.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/python3-podman?distro=oraclelinux-8.9 < 4.0.0-2.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/python3-criu?distro=oraclelinux-8.9 < 3.15-3.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/podman?distro=oraclelinux-8.9 < 4.0.2-25.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/podman-tests?distro=oraclelinux-8.9 < 4.0.2-25.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/podman-remote?distro=oraclelinux-8.9 < 4.0.2-25.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/podman-plugins?distro=oraclelinux-8.9 < 4.0.2-25.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/podman-gvproxy?distro=oraclelinux-8.9 < 4.0.2-25.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/podman-docker?distro=oraclelinux-8.9 < 4.0.2-25.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/podman-catatonit?distro=oraclelinux-8.9 < 4.0.2-25.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/oci-seccomp-bpf-hook?distro=oraclelinux-8.9 < 1.2.5-2.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/netavark?distro=oraclelinux-8.9 < 1.0.1-38.0.1.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/libslirp?distro=oraclelinux-8.9 < 4.4.0-1.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/libslirp-devel?distro=oraclelinux-8.9 < 4.4.0-1.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/fuse-overlayfs?distro=oraclelinux-8.9 < 1.9-2.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/crun?distro=oraclelinux-8.9 < 1.8.7-1.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/criu?distro=oraclelinux-8.9 < 3.15-3.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/criu-libs?distro=oraclelinux-8.9 < 3.15-3.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/criu-devel?distro=oraclelinux-8.9 < 3.15-3.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/crit?distro=oraclelinux-8.9 < 3.15-3.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/containers-common?distro=oraclelinux-8.9 < 1-38.0.1.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/containernetworking-plugins?distro=oraclelinux-8.9 < 1.1.1-6.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/container-selinux?distro=oraclelinux-8.9 < 2.205.0-3.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/conmon?distro=oraclelinux-8.9 < 2.1.4-2.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/cockpit-podman?distro=oraclelinux-8.9 < 46-1.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/buildah?distro=oraclelinux-8.9 < 1.24.6-7.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/buildah-tests?distro=oraclelinux-8.9 < 1.24.6-7.module+el8.9.0+90119+2f9ef15c
pkg:rpm/oraclelinux/aardvark-dns?distro=oraclelinux-8.9 < 1.0.1-38.0.1.module+el8.9.0+90119+2f9ef15c
ID
ELSA-2024-0121
Severity
moderate
URL
https://linux.oracle.com/errata/ELSA-2024-0121.html
Published
2024-01-11T00:00:00
(8 months ago)
Modified
2024-01-11T00:00:00
(8 months ago)
Rights
Copyright 2024 Oracle, Inc.
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/oraclelinux/udica?distro=oraclelinux-8.9 oraclelinux udica < 0.2.6-4.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/slirp4netns?distro=oraclelinux-8.9 oraclelinux slirp4netns < 1.1.8-3.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/skopeo?distro=oraclelinux-8.9 oraclelinux skopeo < 1.6.2-9.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/skopeo-tests?distro=oraclelinux-8.9 oraclelinux skopeo-tests < 1.6.2-9.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/runc?distro=oraclelinux-8.9 oraclelinux runc < 1.1.5-2.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/python3-podman?distro=oraclelinux-8.9 oraclelinux python3-podman < 4.0.0-2.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/python3-criu?distro=oraclelinux-8.9 oraclelinux python3-criu < 3.15-3.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/podman?distro=oraclelinux-8.9 oraclelinux podman < 4.0.2-25.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/podman-tests?distro=oraclelinux-8.9 oraclelinux podman-tests < 4.0.2-25.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/podman-remote?distro=oraclelinux-8.9 oraclelinux podman-remote < 4.0.2-25.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/podman-plugins?distro=oraclelinux-8.9 oraclelinux podman-plugins < 4.0.2-25.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/podman-gvproxy?distro=oraclelinux-8.9 oraclelinux podman-gvproxy < 4.0.2-25.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/podman-docker?distro=oraclelinux-8.9 oraclelinux podman-docker < 4.0.2-25.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/podman-catatonit?distro=oraclelinux-8.9 oraclelinux podman-catatonit < 4.0.2-25.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/oci-seccomp-bpf-hook?distro=oraclelinux-8.9 oraclelinux oci-seccomp-bpf-hook < 1.2.5-2.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/netavark?distro=oraclelinux-8.9 oraclelinux netavark < 1.0.1-38.0.1.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/libslirp?distro=oraclelinux-8.9 oraclelinux libslirp < 4.4.0-1.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/libslirp-devel?distro=oraclelinux-8.9 oraclelinux libslirp-devel < 4.4.0-1.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/fuse-overlayfs?distro=oraclelinux-8.9 oraclelinux fuse-overlayfs < 1.9-2.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/crun?distro=oraclelinux-8.9 oraclelinux crun < 1.8.7-1.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/criu?distro=oraclelinux-8.9 oraclelinux criu < 3.15-3.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/criu-libs?distro=oraclelinux-8.9 oraclelinux criu-libs < 3.15-3.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/criu-devel?distro=oraclelinux-8.9 oraclelinux criu-devel < 3.15-3.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/crit?distro=oraclelinux-8.9 oraclelinux crit < 3.15-3.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/containers-common?distro=oraclelinux-8.9 oraclelinux containers-common < 1-38.0.1.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/containernetworking-plugins?distro=oraclelinux-8.9 oraclelinux containernetworking-plugins < 1.1.1-6.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/container-selinux?distro=oraclelinux-8.9 oraclelinux container-selinux < 2.205.0-3.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/conmon?distro=oraclelinux-8.9 oraclelinux conmon < 2.1.4-2.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/cockpit-podman?distro=oraclelinux-8.9 oraclelinux cockpit-podman < 46-1.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/buildah?distro=oraclelinux-8.9 oraclelinux buildah < 1.24.6-7.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/buildah-tests?distro=oraclelinux-8.9 oraclelinux buildah-tests < 1.24.6-7.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
Affected pkg:rpm/oraclelinux/aardvark-dns?distro=oraclelinux-8.9 oraclelinux aardvark-dns < 1.0.1-38.0.1.module+el8.9.0+90119+2f9ef15c oraclelinux-8.9
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...