[ALSA-2020:4694] Moderate: container-tools:rhel8 security, bug fix, and enhancement update
Type:
security
Severity:
moderate
Release date:
2020-11-03
Description:
The container-tools module contains tools for working with containers, notably podman, buildah, skopeo, and runc. Security Fix(es): * containernetworking/plugins: IPv6 router advertisements allow for MitM attacks on IPv4 clusters (CVE-2020-10749) * QEMU: slirp: networking out-of-bounds read information disclosure vulnerability (CVE-2020-10756) * golang.org/x/text: possibility to trigger an infinite loop in encoding/unicode could lead to crash (CVE-2020-14040) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 libslirp-devel-4.3.1-1.module_el8.6.0+2876+9ed4eae2.aarch64.rpm bf78102e9bec56771abff788e3e9faa89d9851415bd9113306a377b5e4217b09
aarch64 libslirp-4.3.1-1.module_el8.6.0+2876+9ed4eae2.aarch64.rpm f719eed0bd389be60c4c101043a6341134725a1dcea82f94b45108a00a3826b0
noarch python-podman-api-1.2.0-0.2.gitd0a45fe.module_el8.5.0+2635+e4386a39.noarch.rpm 6014c5c3fb0e8b251cf8fe13d9dc538fe94d16ae2bfbf82206773d07378a433e
noarch python-podman-api-1.2.0-0.2.gitd0a45fe.module_el8.5.0+108+00865455.noarch.rpm bb7cecd971e77ee0ad43f29b3351871450f3fb08b180f0fae99cc0bf904cc0b5
ppc64le libslirp-4.3.1-1.module_el8.6.0+2876+9ed4eae2.ppc64le.rpm 7e321e8815bb1d11f925c77d7b0804a162490902f67d405602ad4f5220597a61
ppc64le libslirp-devel-4.3.1-1.module_el8.6.0+2876+9ed4eae2.ppc64le.rpm 9becdb022aca7853e26027a20244f2bedf325eb9f06ce3943d0221d2ceca4f77
x86_64 libslirp-devel-4.3.1-1.module_el8.6.0+2876+9ed4eae2.x86_64.rpm 27c0497463caea3a884f35c234bebfa9913644f0836bdebdb5ddf36a8c8705d8
x86_64 libslirp-4.3.1-1.module_el8.6.0+2876+9ed4eae2.x86_64.rpm 9e1495b5d6fb661fcea9e2d6b6a0e2098aa2341924c6d0f0790a7dd9ffded4f0
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.