[ALSA-2024:4761] Important: containernetworking-plugins security update
Type:
security
Severity:
important
Release date:
2024-07-24
Description:
The Container Network Interface (CNI) project consists of a specification and libraries for writing plug-ins for configuring network interfaces in Linux containers, along with a number of supported plug-ins. CNI concerns itself only with network connectivity of containers and removing allocated resources when the container is deleted. Security Fix(es): * golang-fips/openssl: Memory leaks in code encrypting and decrypting RSA payloads (CVE-2024-1394) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 containernetworking-plugins-1.4.0-4.el9_4.aarch64.rpm 3113b6d28fc10334be5c3550eada4c71a34853b50f45a31ff87a9edeb73c160b
ppc64le containernetworking-plugins-1.4.0-4.el9_4.ppc64le.rpm 6574918f6f9bacb4093786baef8910d913c0ff6fef86d6938022a3c15544c424
s390x containernetworking-plugins-1.4.0-4.el9_4.s390x.rpm 06fcd9575511b3833d1dbbb61998b4d544eba4916bfd71b1abc185f5c91da416
x86_64 containernetworking-plugins-1.4.0-4.el9_4.x86_64.rpm 887da954211987964c09087d01d48c7d68b3c22c20e3e3c3646aa55dd7f5a84a
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.