ELSA-2022-7529

ELSA-2022-7529 - container-tools:3.0 security update

Type:SECURITY
Severity:MODERATE
Release Date:2022-11-15

Description


buildah
[1.19.9-6]
- update to the latest content of https://github.com/containers/buildah/tree/release-1.19
(https://github.com/containers/buildah/commit/6d7f496)
- Related: #2061390

[1.19.9-5]
- update to the latest content of https://github.com/containers/buildah/tree/release-1.19
(https://github.com/containers/buildah/commit/d69ac6e)
- Related: #2061390

[1.19.9-4]
- update to the latest content of https://github.com/containers/buildah/tree/release-1.19
(https://github.com/containers/buildah/commit/7c6701d)
- Related: #2061390

[1.19.9-3]
- update to the latest content of https://github.com/containers/buildah/tree/release-1.19
(https://github.com/containers/buildah/commit/3808e27)
- Related: #2061390

[1.19.9-2]
- update to the latest content of https://github.com/containers/buildah/tree/release-1.19
(https://github.com/containers/buildah/commit/ff5434f)
- Related: #2001445

[1.19.9-1]
- update to the latest content of https://github.com/containers/buildah/tree/release-1.19
(https://github.com/containers/buildah/commit/c1d6200)
- fixes CVE-2021-3602
- Related: #1977943

cockpit-podman
[29-2]
- fix gating test failure for cockpit-podman
- Related: #1934415

[29-1]
- update to https://github.com/cockpit-project/cockpit-podman/releases/tag/29
- Related: #1883490

conmon
[2:2.0.26-3]
- amend CVE-2022-1708
- Related: #2093390

[2:2.0.26-2]
- fix CVE-2022-1708 - thanks to Peter Hunt
- Related: #2061390

[2:2.0.26-1]
- update to https://github.com/containers/conmon/releases/tag/v2.0.26
- Related: #1883490

containernetworking-plugins
[0.9.1-1]
- update to https://github.com/containernetworking/plugins/releases/tag/v0.9.1
- Related: #1883490

criu
[3.15-1]
- update to https://github.com/checkpoint-restore/criu/releases/tag/v3.15
- Related: #1883490

crun
[0.18-3]
- fix CVE-2022-27650
- Related: #2061390

[0.18-2]
- allow to build without glibc-static (thanks to Giuseppe Scrivano)
- Related: #1883490

[0.18-1]
- update to https://github.com/containers/crun/releases/tag/0.18
- Related: #1883490

fuse-overlayfs
[1.4.0-2]
- disable openat2 syscall again - still unsupported in current RHEL8 kernel
- Related: #1883490

[1.4.0-1]
- update to https://github.com/containers/fuse-overlayfs/releases/tag/v1.4.0
- Related: #1883490

libslirp
[4.3.1-1]
- update to https://gitlab.freedesktop.org/slirp/libslirp/-/releases/v4.3.1
- Related: #1821193

oci-seccomp-bpf-hook
[1.2.0-3]
- actually apply the build fix patch
- Related: #1934415

[1.2.0-2]
- resolve build issue
- Related: #1934415

[1.2.0-1]
- revert back to 1.2.0 - build issues
- Related: #1883490

podman
[3.0.1-13]
- update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel
(https://github.com/containers/podman/commit/37cd5bf)
- Related: #2061390

[3.0.1-12]
- update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel
(https://github.com/containers/podman/commit/1c4d1a7)
- Related: #2061390

[3.0.1-11]
- update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel
(https://github.com/containers/podman/commit/4cd74c2)
- Related: #2061390

[3.0.1-10]
- update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel
(https://github.com/containers/podman/commit/47b310e)
- Related: #2061390

[3.0.1-9]
- update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel
(https://github.com/containers/podman/commit/801b7e8)
- Resolves: #2074144

[3.0.1-8]
- update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel
(https://github.com/containers/podman/commit/c5d8129)
- Related: #2061390

[3.0.1-7]
- add missing docker man pages
- Related: #2009106

[3.0.1-6]
- update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel
(https://github.com/containers/podman/commit/4f91b37)
- Related: #2009106

[3.0.1-5]
- update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel
(https://github.com/containers/podman/commit/2bed76e)
- fixes CVE-2021-3602
- Related: #1977943

[3.0.1-4]
- update to the latest content of https://github.com/containers/podman/tree/v3.0.1-rhel
(https://github.com/containers/podman/commit/eebd611)
- Related: #1934415

[3.0.1-3]
- remove docker man page as it was removed upstream
- Related: #1934415

[3.0.1-2]
- update to the latest content of https://github.com/containers/podman/tree/v3.0
(https://github.com/containers/podman/commit/9a2fc37)
- Related: #1883490

[3.0.1-1]
- update to the latest content of https://github.com/containers/podman/tree/v3.0
(https://github.com/containers/podman/commit/7e286bc)
- Related: #1883490

runc
[1.0.0-73.rc95]
- fix podman run --pid=host command causes OCI permission error
- rc95 fixes CVE-2021-30465
- Related: #2001445

skopeo
[1.2.4-2.0.1]
- Ignore rhel-shortnames.conf [JIRA: OLDIS-3902]
- Handling redirect from the docker registry [Orabug: 29874238] (Nikita Gerasimov)
- Add oracle registry into the conf file [Orabug: 29845934 31306708]

[1:1.2.4-2]
- update to the latest content of https://github.com/containers/skopeo/tree/release-1.2
(https://github.com/containers/skopeo/commit/7300333)
- Related: #2061390

[1:1.2.4-1]
- update to the latest content of https://github.com/containers/skopeo/tree/release-1.2
(https://github.com/containers/skopeo/commit/9921983)
- Related: #2001445

slirp4netns
[1.1.8-1]
- update to
https://github.com/rootless-containers/slirp4netns/releases/tag/v1.1.8
- Related: #1883490

udica
[0.2.4-1]
- update to https://github.com/containers/udica/releases/tag/v0.2.4
- Related: #1883490


Related CVEs


CVE-2022-1705
CVE-2022-28131
CVE-2022-30631
CVE-2022-30633
CVE-2022-32148
CVE-2022-1962
CVE-2022-30630
CVE-2022-30632
CVE-2022-1708
CVE-2022-21698

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 8 (aarch64) buildah-1.19.9-6.module+el8.7.0+20785+0180d035.src.rpm62c7b626578e0a44b034dd1a2191c867-
cockpit-podman-29-2.module+el8.7.0+20785+0180d035.src.rpm8581aad750a7b0361f58bd983b5a62a9-
conmon-2.0.26-3.module+el8.7.0+20785+0180d035.src.rpma9bd379b9a6b8609a0902f7029de0997-
container-selinux-2.189.0-1.module+el8.7.0+20785+0180d035.src.rpma749759ea6ed4316cdaa73d53e0a2927-
containernetworking-plugins-0.9.1-1.module+el8.7.0+20785+0180d035.src.rpmf543970a1d2241000303fcd0614ad1a0-
criu-3.15-1.module+el8.7.0+20785+0180d035.src.rpm85e388bfd651d9e5b698214762edbfa4-
crun-0.18-3.module+el8.7.0+20785+0180d035.src.rpm529884217f34c5c1fe38440208509f7e-
fuse-overlayfs-1.4.0-2.module+el8.7.0+20785+0180d035.src.rpm3c8c9da10e98d9e126a4d38c1f3cbe66-
libslirp-4.3.1-1.module+el8.7.0+20785+0180d035.src.rpm6bc1d84fd2c13b6bc085cc6c50b99cc7-
oci-seccomp-bpf-hook-1.2.0-3.module+el8.7.0+20785+0180d035.src.rpm41836d239ce5672169688a9534b79587-
podman-3.0.1-13.module+el8.7.0+20785+0180d035.src.rpmecb7e319ddc29a80de5fe28f9c5395dc-
runc-1.0.0-73.rc95.module+el8.7.0+20785+0180d035.src.rpm5d2432dca101fcb8d6de39fb12dbe3c4-
skopeo-1.2.4-2.0.1.module+el8.7.0+20785+0180d035.src.rpmfa5d9d12deab7dbf682a97894b551637-
slirp4netns-1.1.8-1.module+el8.7.0+20785+0180d035.src.rpm1f6de43d53e73d97a3ddf325d3c62851-
udica-0.2.4-1.module+el8.7.0+20785+0180d035.src.rpmb951bb8dc9eb85b5b1ec12d055dafd25-
buildah-1.19.9-6.module+el8.7.0+20785+0180d035.aarch64.rpmcfa74fb64865b4156a97d1a38f423afb-
buildah-tests-1.19.9-6.module+el8.7.0+20785+0180d035.aarch64.rpma9c8edc06dcf3057c039d3b75aab8bd0-
cockpit-podman-29-2.module+el8.7.0+20785+0180d035.noarch.rpmb5782b0ced0ccd665d2eb3662bccd720-
conmon-2.0.26-3.module+el8.7.0+20785+0180d035.aarch64.rpm5ec7b4637a2a816ac5b1d4d8bc1ef6a1-
container-selinux-2.189.0-1.module+el8.7.0+20785+0180d035.noarch.rpm42abbbd39f37d403d669e77499926c3e-
containernetworking-plugins-0.9.1-1.module+el8.7.0+20785+0180d035.aarch64.rpm4d646e7917a4863b6c91f2dc84b3a1ce-
containers-common-1.2.4-2.0.1.module+el8.7.0+20785+0180d035.aarch64.rpm804cfe372836e31f51e95e350fee927f-
crit-3.15-1.module+el8.7.0+20785+0180d035.aarch64.rpm688c2a797eeb820895b32b135574beb0-
criu-3.15-1.module+el8.7.0+20785+0180d035.aarch64.rpm66889e409bd85d9d73a5eecf175a0b58-
crun-0.18-3.module+el8.7.0+20785+0180d035.aarch64.rpm937e8d6b6785411c089797a03c147d65-
fuse-overlayfs-1.4.0-2.module+el8.7.0+20785+0180d035.aarch64.rpm4290a471782cb3c923c7b11c1e5051c1-
libslirp-4.3.1-1.module+el8.7.0+20785+0180d035.aarch64.rpm013e00e3b7663a2d0898518d1b8f5432-
libslirp-devel-4.3.1-1.module+el8.7.0+20785+0180d035.aarch64.rpm4b561995de3971d546a3968252a9639a-
oci-seccomp-bpf-hook-1.2.0-3.module+el8.7.0+20785+0180d035.aarch64.rpmaf6107f3caa7e5fe160874989ae6c1cd-
podman-3.0.1-13.module+el8.7.0+20785+0180d035.aarch64.rpmad35daef7b9425a5146940770a603edf-
podman-catatonit-3.0.1-13.module+el8.7.0+20785+0180d035.aarch64.rpmc389a91aeb4925f8f606ab2e60bae187-
podman-docker-3.0.1-13.module+el8.7.0+20785+0180d035.noarch.rpm128ef0372d8e50f9de864aff78824870-
podman-plugins-3.0.1-13.module+el8.7.0+20785+0180d035.aarch64.rpm0420e5a098b5112814ab2a687a9fbc6e-
podman-remote-3.0.1-13.module+el8.7.0+20785+0180d035.aarch64.rpmb42454ca1e327b7f4ec3dc0d9887a0b7-
podman-tests-3.0.1-13.module+el8.7.0+20785+0180d035.aarch64.rpma500be741465d2e5a7b8457f01ef93de-
python3-criu-3.15-1.module+el8.7.0+20785+0180d035.aarch64.rpma44096d5f3ae53b53f2e259e67ea8713-
runc-1.0.0-73.rc95.module+el8.7.0+20785+0180d035.aarch64.rpm03e59f469aacc850ef72c9fdf09b8cd3-
skopeo-1.2.4-2.0.1.module+el8.7.0+20785+0180d035.aarch64.rpmd466172b49fa5db8d9d09c2fb82bb14b-
skopeo-tests-1.2.4-2.0.1.module+el8.7.0+20785+0180d035.aarch64.rpm7cac47cb24ae62d0533c24bb49a93fe6-
slirp4netns-1.1.8-1.module+el8.7.0+20785+0180d035.aarch64.rpm9e6de074af6f8d8ec3c6519ed20f3f42-
udica-0.2.4-1.module+el8.7.0+20785+0180d035.noarch.rpm8118a96be36a5283d937e68dd25d31ac-
Oracle Linux 8 (x86_64) buildah-1.19.9-6.module+el8.7.0+20785+0180d035.src.rpm62c7b626578e0a44b034dd1a2191c867-
cockpit-podman-29-2.module+el8.7.0+20785+0180d035.src.rpm8581aad750a7b0361f58bd983b5a62a9-
conmon-2.0.26-3.module+el8.7.0+20785+0180d035.src.rpma9bd379b9a6b8609a0902f7029de0997-
container-selinux-2.189.0-1.module+el8.7.0+20785+0180d035.src.rpma749759ea6ed4316cdaa73d53e0a2927-
containernetworking-plugins-0.9.1-1.module+el8.7.0+20785+0180d035.src.rpmf543970a1d2241000303fcd0614ad1a0-
criu-3.15-1.module+el8.7.0+20785+0180d035.src.rpm85e388bfd651d9e5b698214762edbfa4-
crun-0.18-3.module+el8.7.0+20785+0180d035.src.rpm529884217f34c5c1fe38440208509f7e-
fuse-overlayfs-1.4.0-2.module+el8.7.0+20785+0180d035.src.rpm3c8c9da10e98d9e126a4d38c1f3cbe66-
libslirp-4.3.1-1.module+el8.7.0+20785+0180d035.src.rpm6bc1d84fd2c13b6bc085cc6c50b99cc7-
oci-seccomp-bpf-hook-1.2.0-3.module+el8.7.0+20785+0180d035.src.rpm41836d239ce5672169688a9534b79587-
podman-3.0.1-13.module+el8.7.0+20785+0180d035.src.rpmecb7e319ddc29a80de5fe28f9c5395dc-
runc-1.0.0-73.rc95.module+el8.7.0+20785+0180d035.src.rpm5d2432dca101fcb8d6de39fb12dbe3c4-
skopeo-1.2.4-2.0.1.module+el8.7.0+20785+0180d035.src.rpmfa5d9d12deab7dbf682a97894b551637-
slirp4netns-1.1.8-1.module+el8.7.0+20785+0180d035.src.rpm1f6de43d53e73d97a3ddf325d3c62851-
udica-0.2.4-1.module+el8.7.0+20785+0180d035.src.rpmb951bb8dc9eb85b5b1ec12d055dafd25-
buildah-1.19.9-6.module+el8.7.0+20785+0180d035.x86_64.rpmadebd4ef2eb25530045cb222968338c6-
buildah-tests-1.19.9-6.module+el8.7.0+20785+0180d035.x86_64.rpm9e5a05693abce02f4d4a1e25e8b36e09-
cockpit-podman-29-2.module+el8.7.0+20785+0180d035.noarch.rpmb5782b0ced0ccd665d2eb3662bccd720-
conmon-2.0.26-3.module+el8.7.0+20785+0180d035.x86_64.rpme555dff0ee90db32ea0b39cf4ff2ca54-
container-selinux-2.189.0-1.module+el8.7.0+20785+0180d035.noarch.rpm42abbbd39f37d403d669e77499926c3e-
containernetworking-plugins-0.9.1-1.module+el8.7.0+20785+0180d035.x86_64.rpmd2e375e6a6bd6d985a1b3cf42897f713-
containers-common-1.2.4-2.0.1.module+el8.7.0+20785+0180d035.x86_64.rpmdb95285b0c9c56404be52d5b61f03efa-
crit-3.15-1.module+el8.7.0+20785+0180d035.x86_64.rpm8d6fddb638367361bb0572832f5ef12a-
criu-3.15-1.module+el8.7.0+20785+0180d035.x86_64.rpm63c052d4bfb044e82d41ca157a568fa9-
crun-0.18-3.module+el8.7.0+20785+0180d035.x86_64.rpm7939c452535881a0010f738fc54b4621-
fuse-overlayfs-1.4.0-2.module+el8.7.0+20785+0180d035.x86_64.rpm63d6a345b0fde0dfcf4cb57644a733bc-
libslirp-4.3.1-1.module+el8.7.0+20785+0180d035.x86_64.rpmfa28096bdca5013fc2d2ed728f886663-
libslirp-devel-4.3.1-1.module+el8.7.0+20785+0180d035.x86_64.rpmf6c14e8316895ab35bf736876a9a3dd0-
oci-seccomp-bpf-hook-1.2.0-3.module+el8.7.0+20785+0180d035.x86_64.rpm1d1f1882cca3fb2756887618a7992b52-
podman-3.0.1-13.module+el8.7.0+20785+0180d035.x86_64.rpm580c2474a4068b463830c4e133bfbe4a-
podman-catatonit-3.0.1-13.module+el8.7.0+20785+0180d035.x86_64.rpm9f8acdbff15cff53fe0ed5c32811e2bb-
podman-docker-3.0.1-13.module+el8.7.0+20785+0180d035.noarch.rpm128ef0372d8e50f9de864aff78824870-
podman-plugins-3.0.1-13.module+el8.7.0+20785+0180d035.x86_64.rpm10d515034ae53f8550923072a22d9ec3-
podman-remote-3.0.1-13.module+el8.7.0+20785+0180d035.x86_64.rpm49921f3088bb6510ba4c07104df253e6-
podman-tests-3.0.1-13.module+el8.7.0+20785+0180d035.x86_64.rpmc9820a0324a073b9d7f92ebc4dee3a36-
python3-criu-3.15-1.module+el8.7.0+20785+0180d035.x86_64.rpmd1a0e830ba7669c44a92157548e7266b-
runc-1.0.0-73.rc95.module+el8.7.0+20785+0180d035.x86_64.rpm016e1e0cf79768e4a0fd91983dca288a-
skopeo-1.2.4-2.0.1.module+el8.7.0+20785+0180d035.x86_64.rpm711b993a7e91d5f00cb0500ae176619c-
skopeo-tests-1.2.4-2.0.1.module+el8.7.0+20785+0180d035.x86_64.rpme3e4c211ec50bfbbd390cd33505e6aa2-
slirp4netns-1.1.8-1.module+el8.7.0+20785+0180d035.x86_64.rpm2b0bcaca8906ebe251b75de65521dc9d-
udica-0.2.4-1.module+el8.7.0+20785+0180d035.noarch.rpm8118a96be36a5283d937e68dd25d31ac-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete