[ALSA-2020:0348] Important: container-tools:rhel8 security, bug fix, and enhancement update
Type:
security
Severity:
important
Release date:
2020-02-04
Description:
The container-tools module contains tools for working with containers, notably podman, buildah, skopeo, and runc. Security Fix(es): * QEMU: slirp: OOB buffer access while emulating tcp protocols in tcp_emu() (CVE-2020-7039) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 containernetworking-plugins-0.8.3-4.module_el8.5.0+2635+e4386a39.aarch64.rpm 3fc278dc589b45a61931e18a3858f4df6df283432593810e12a22135486e5628
noarch cockpit-podman-11-1.module_el8.5.0+108+00865455.noarch.rpm 3525134cda7e981fe2ded68c4813ce09c7efece2c6d8c3f8f4b4da268c647f86
noarch udica-0.2.1-2.module_el8.5.0+108+00865455.noarch.rpm 49cfff6dc507f3d74fb6e02a7fd3da4cf45ab5291e37c150c487a8bd14eb2884
noarch python-podman-api-1.2.0-0.2.gitd0a45fe.module_el8.5.0+2635+e4386a39.noarch.rpm 6014c5c3fb0e8b251cf8fe13d9dc538fe94d16ae2bfbf82206773d07378a433e
noarch cockpit-podman-11-1.module_el8.5.0+2635+e4386a39.noarch.rpm 691ee7e18ff98e8dcd548dbb4737bb9dd7755779f6aba83e688b66a32fdf2ecf
noarch udica-0.2.1-2.module_el8.5.0+2635+e4386a39.noarch.rpm 9b886f6e05c447d885e09a28818a3bd3b96d150c5b5498cf2e71df0a54c891a0
noarch python-podman-api-1.2.0-0.2.gitd0a45fe.module_el8.5.0+108+00865455.noarch.rpm bb7cecd971e77ee0ad43f29b3351871450f3fb08b180f0fae99cc0bf904cc0b5
ppc64le containernetworking-plugins-0.8.3-4.module_el8.5.0+108+00865455.ppc64le.rpm 4aa34a1d9ae2e5e4d3d582b8f88a5a4be19dee53577dc43de68c41652f3715d1
x86_64 containernetworking-plugins-0.8.3-4.module_el8.5.0+2635+e4386a39.x86_64.rpm 1fe0f63af6df749a7c1a66a5706677b9d98308002b72f928c89bc8835a22a6a3
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.