跳转到帖子

Red Hat OpenShift: CVE-2024-11218: podman: buildah: Container breakout by using --jobs=2 and a race condition when building a malicious Containerfile

recommended_posts

发布于
  • Members

Red Hat OpenShift: CVE-2024-11218: podman: buildah: Container breakout by using --jobs=2 and a race condition when building a malicious Containerfile

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
01/22/2025
Created
02/11/2025
Added
02/10/2025
Modified
02/14/2025

Description

A vulnerability was found in `podman build` and `buildah.` This issue occurs in a container breakout by using --jobs=2 and a race condition when building a malicious Containerfile. SELinux might mitigate it, but even with SELinux on, it still allows the enumeration of files and directories on the host.

Solution(s)

  • linuxrpm-upgrade-podman

References

  • https://attackerkb.com/topics/cve-2024-11218
  • CVE - 2024-11218
  • RHSA-2025:0830
  • RHSA-2025:0878
  • RHSA-2025:0922
  • RHSA-2025:0923
  • RHSA-2025:1186
  • RHSA-2025:1187
  • RHSA-2025:1188
  • RHSA-2025:1189
  • RHSA-2025:1207
  • RHSA-2025:1275
  • RHSA-2025:1295
  • RHSA-2025:1296
  • RHSA-2025:1372
View more
  • 查看数 703
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…