DEBIAN-CVE-2022-4123

Source
https://security-tracker.debian.org/tracker/CVE-2022-4123
Import Source
https://storage.googleapis.com/osv-test-debian-osv/debian-cve-osv/DEBIAN-CVE-2022-4123.json
JSON Data
https://api.test.osv.dev/v1/vulns/DEBIAN-CVE-2022-4123
Upstream
Published
2022-12-08T16:15:14Z
Modified
2025-09-18T05:18:47Z
Summary
[none]
Details

A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path traversal, resulting in an impact to confidentiality.

References

Affected packages

Debian:11

golang-github-containers-buildah

Package

Name
golang-github-containers-buildah
Purl
pkg:deb/debian/golang-github-containers-buildah?arch=source

Affected ranges

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:12

golang-github-containers-buildah

Package

Name
golang-github-containers-buildah
Purl
pkg:deb/debian/golang-github-containers-buildah?arch=source

Affected ranges

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:13

golang-github-containers-buildah

Package

Name
golang-github-containers-buildah
Purl
pkg:deb/debian/golang-github-containers-buildah?arch=source

Affected ranges

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:14

golang-github-containers-buildah

Package

Name
golang-github-containers-buildah
Purl
pkg:deb/debian/golang-github-containers-buildah?arch=source

Affected ranges

Ecosystem specific

{
    "urgency": "unimportant"
}