Vulnerability Database
Blog
FAQ
Docs
RHSA-2022:8008
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2022:8008
Import Source
https://security.access.redhat.com/data/osv/RHSA-2022:8008.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2022:8008
Related
CVE-2021-20291
CVE-2021-33195
CVE-2021-33197
CVE-2021-33198
CVE-2022-27191
CVE-2022-2989
CVE-2022-2990
Published
2024-09-30T14:28:42Z
Modified
2024-10-29T20:23:40Z
Severity
7.5 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: buildah security and bug fix update
Details
References
https://access.redhat.com/errata/RHSA-2022:8008
https://access.redhat.com/security/updates/classification/#moderate
https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/9.1_release_notes/index
https://bugzilla.redhat.com/show_bug.cgi?id=1939485
https://bugzilla.redhat.com/show_bug.cgi?id=1989564
https://bugzilla.redhat.com/show_bug.cgi?id=1989570
https://bugzilla.redhat.com/show_bug.cgi?id=1989575
https://bugzilla.redhat.com/show_bug.cgi?id=2064702
https://bugzilla.redhat.com/show_bug.cgi?id=2081835
https://bugzilla.redhat.com/show_bug.cgi?id=2121445
https://bugzilla.redhat.com/show_bug.cgi?id=2121453
https://security.access.redhat.com/data/csaf/v2/advisories/2022/rhsa-2022_8008.json
https://access.redhat.com/security/cve/CVE-2021-20291
https://www.cve.org/CVERecord?id=CVE-2021-20291
https://nvd.nist.gov/vuln/detail/CVE-2021-20291
https://unit42.paloaltonetworks.com/cve-2021-20291/
https://access.redhat.com/security/cve/CVE-2021-33195
https://www.cve.org/CVERecord?id=CVE-2021-33195
https://nvd.nist.gov/vuln/detail/CVE-2021-33195
https://groups.google.com/g/golang-announce/c/RgCMkAEQjSI
https://access.redhat.com/security/cve/CVE-2021-33197
https://www.cve.org/CVERecord?id=CVE-2021-33197
https://nvd.nist.gov/vuln/detail/CVE-2021-33197
https://access.redhat.com/security/cve/CVE-2021-33198
https://www.cve.org/CVERecord?id=CVE-2021-33198
https://nvd.nist.gov/vuln/detail/CVE-2021-33198
https://access.redhat.com/security/cve/CVE-2022-2989
https://www.cve.org/CVERecord?id=CVE-2022-2989
https://nvd.nist.gov/vuln/detail/CVE-2022-2989
https://www.benthamsgaze.org/2022/08/22/vulnerability-in-linux-containers-investigation-and-mitigation/
https://access.redhat.com/security/cve/CVE-2022-2990
https://www.cve.org/CVERecord?id=CVE-2022-2990
https://nvd.nist.gov/vuln/detail/CVE-2022-2990
https://access.redhat.com/security/cve/CVE-2022-27191
https://www.cve.org/CVERecord?id=CVE-2022-27191
https://nvd.nist.gov/vuln/detail/CVE-2022-27191
https://groups.google.com/g/golang-announce/c/-cp44ypCT5s/m/wmegxkLiAQAJ
Affected packages
Red Hat:enterprise_linux:9::appstream
/
buildah
Package
Name
buildah
Purl
pkg:rpm/redhat/buildah
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.27.0-2.el9
Red Hat:enterprise_linux:9::appstream
/
buildah-debuginfo
Package
Name
buildah-debuginfo
Purl
pkg:rpm/redhat/buildah-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.27.0-2.el9
Red Hat:enterprise_linux:9::appstream
/
buildah-debugsource
Package
Name
buildah-debugsource
Purl
pkg:rpm/redhat/buildah-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.27.0-2.el9
Red Hat:enterprise_linux:9::appstream
/
buildah-tests
Package
Name
buildah-tests
Purl
pkg:rpm/redhat/buildah-tests
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.27.0-2.el9
Red Hat:enterprise_linux:9::appstream
/
buildah-tests-debuginfo
Package
Name
buildah-tests-debuginfo
Purl
pkg:rpm/redhat/buildah-tests-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1:1.27.0-2.el9
RHSA-2022:8008 - OSV