container-tools: rhel8 security and bug fix update
エラータID: AXSA:2020-295:01
Release date:
Tuesday, September 8, 2020 - 00:13
Subject:
container-tools: rhel8 security and bug fix update
Affected Channels:
Asianux Server 8 for x86_64
Severity:
High
Description:
podman, buildah, skopeo, and runc.
Security Fix(es):
QEMU: Slirp: potential OOB access due to unsafe snprintf() usages
(CVE-2020-8608)
Bug Fix(es):
useradd and groupadd fail under rootless Buildah and podman
Podman support for FIPS Mode requires a bind mount inside the container
Podman support for FIPS Mode requires a bind mount inside the container
fuse-overlayfs segfault
buildah COPY command is slow when .dockerignore file is not present
Modularity name: container-tools
Stream name: AXS8
Solution:
Update packages.
CVEs:
CVE-2020-8608
In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code.
In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code.
Additional Info:
N/A
Download:
SRPMS
- buildah-1.11.6-6.module+el8+106+15278325.src.rpm
MD5: ef5a2b82b7ec9d5117b6009c3e23863d
SHA-256: a4da54020148a74a62162501f487ad35d474e7c0da1567dc17ec3fa8dc2f22a3
Size: 9.84 MB - cockpit-podman-11-1.module+el8+106+15278325.src.rpm
MD5: 5f85df70530afa4c158eb28f429928e8
SHA-256: dec29e027b965ec76e70c428e667a7257d14b311b72907be4115110efae287e5
Size: 1.36 MB - conmon-2.0.6-1.module+el8+106+15278325.src.rpm
MD5: 3846e0731e834bd1e6e07bcde3f1f7fa
SHA-256: f0caa694565a3bbf71053ed49d6f720956a634c6f7fc8306cd0fab579a838775
Size: 60.69 kB - containernetworking-plugins-0.8.3-4.module+el8+106+15278325.src.rpm
MD5: c90a6f9375621338433e02ed0d1de8fa
SHA-256: 56dc68a775ea86d8de9667b800729bce71eaa85829bd73b3b5ab53575da56f5e
Size: 1.86 MB - container-selinux-2.124.0-1.module+el8+106+15278325.src.rpm
MD5: bf0b966054d1ae96a0a0bb1c5a4245b6
SHA-256: bfabe49adc3f109d4d593658d150b60782114a308de06551ad2c9423d41a0cca
Size: 39.71 kB - fuse-overlayfs-0.7.2-5.module+el8+106+15278325.src.rpm
MD5: ffc71b3fe259928c69c694f505215f9e
SHA-256: 8a0359afbd750b03f02cc30ac69cade5e91c24ace52f916a9703d4383957d7be
Size: 106.48 kB - podman-1.6.4-4.module+el8+106+15278325.src.rpm
MD5: cb9ee3ae9f0b7bb3b8d54d971b5c9670
SHA-256: 0ee0fde864c0fe815d8543c83d81b7a9812fe08543a969b32b810fe5af1c0c74
Size: 7.74 MB - python-podman-api-1.2.0-0.2.gitd0a45fe.module+el8+106+15278325.src.rpm
MD5: 1c8264a1cb7f68eef847dca0e65adc79
SHA-256: a4c9fe1822bd0fb7f82da6c311eea1d78b9a6a9ec967be391b5e912c3abf57e6
Size: 39.40 kB - runc-1.0.0-64.rc9.module+el8+106+15278325.src.rpm
MD5: 1a5376148e80f81327257748476369e4
SHA-256: de759658f497a788b779cf5524d65aab7578b96b71175ed008b79974895d2616
Size: 1.74 MB - skopeo-0.1.40-8.module+el8+106+15278325.src.rpm
MD5: 1a3c9cdec9ee01d55d9708739791d5a2
SHA-256: f4331279d23445f4348d41f18146cac3aa40e2a53db063665ed83d6586abc323
Size: 3.68 MB - slirp4netns-0.4.2-3.git21fdece.module+el8+106+15278325.src.rpm
MD5: 54d6844cc3a8f7275533cf75ada2c5b6
SHA-256: 2ecae7228d062a556c8de8dc6861324cba1ce695f7bb3bb89268ef945c95d7e4
Size: 178.52 kB - toolbox-0.0.4-1.module+el8+106+15278325.src.rpm
MD5: 7e4de08fac8001a5cacb5232291ed273
SHA-256: cb31fb163eab60f71edefbb4a704f5e9758e8c4d59c66234903c39694087d2c7
Size: 18.57 kB - udica-0.2.1-2.module+el8+106+15278325.src.rpm
MD5: 575e40112e6e9a47e87c9a0e32390cc0
SHA-256: 9357a553ac39c1f6fc9858f62e7ca4d24a81cd2fd73105bc4e87a836530163d4
Size: 128.16 kB
Asianux Server 8 for x86_64
- buildah-1.11.6-6.module+el8+106+15278325.x86_64.rpm
MD5: 104d83ed256c3c01364e649f7f421712
SHA-256: a85e5e67bb8fcb3fb72fc3143a641ae9467cbb50454bbd21ee3f02c332e58c00
Size: 8.80 MB - buildah-tests-1.11.6-6.module+el8+106+15278325.x86_64.rpm
MD5: 1fd5b3ea32728f8d27a6a499424932ab
SHA-256: 5181f77e44f6bb8cd6914db88c8bd146c3958cf75e89b123f10a18aa57ffd7de
Size: 10.21 MB - cockpit-podman-11-1.module+el8+106+15278325.noarch.rpm
MD5: cb538056ac77d14222b351ac6bd3839a
SHA-256: 7b1a274bfe0d017f8e7b497b1a8a6dea95a104be77d40588cf78e347c9c72de1
Size: 1.02 MB - conmon-2.0.6-1.module+el8+106+15278325.x86_64.rpm
MD5: 1819c063b28fee93d2ac87fe89a4bfae
SHA-256: 411266d2942c4801d1e94f8edb3186fe5d0b711754c17aadc683b1c15e5e8c53
Size: 36.15 kB - containernetworking-plugins-0.8.3-4.module+el8+106+15278325.x86_64.rpm
MD5: 96a72430139a108384e9d2185c53eca4
SHA-256: b77bf74d462db8ccc0968fb44e48af587c09a21bb5c3946406122a994c99f0e2
Size: 19.71 MB - container-selinux-2.124.0-1.module+el8+106+15278325.noarch.rpm
MD5: 2114c11de311ae178bbf388410f03969
SHA-256: 0a27e759abe2e1c7f0ce8156a65864e88c626f6c2e6525ab3afc4c9bbfc06ff1
Size: 45.98 kB - fuse-overlayfs-0.7.2-5.module+el8+106+15278325.x86_64.rpm
MD5: 89480b27464ee97b714d9112b960521b
SHA-256: ebfb499b182bd3a109ccf51b8c0c20caf84ce6c8092a9ec3a1bf77d74cab1cef
Size: 58.41 kB - podman-1.6.4-4.module+el8+106+15278325.x86_64.rpm
MD5: 29e471da4e7bc7db5d1237a682e5fa81
SHA-256: 96e1c80c0279c8e8435927e0991dd2917f96ad72e71f2dbeb2027c274a7a89de
Size: 12.36 MB - podman-docker-1.6.4-4.module+el8+106+15278325.noarch.rpm
MD5: 0408451a1c9b2d6db592b9c2e269765c
SHA-256: 543367da7fc2e1452603e2cf5b0eff606b47ab0a39b292f8ef6905691d0fcd34
Size: 33.88 kB - podman-manpages-1.6.4-4.module+el8+106+15278325.noarch.rpm
MD5: a45ed4f443a39a66af1625da7707b167
SHA-256: c9a32257bac115edc72f0d589356fadb5201351ed45f9501bc1117e1e675da24
Size: 174.86 kB - podman-remote-1.6.4-4.module+el8+106+15278325.x86_64.rpm
MD5: 8ab2244174a5e15c1fa7895545307da6
SHA-256: f1a0ddf874d908840b28ecc6f13d08d8e669a6b1149abb48b50f4114811bdf34
Size: 11.59 MB - podman-tests-1.6.4-4.module+el8+106+15278325.x86_64.rpm
MD5: f3096549c7cf5408dbcaff01a12a98d3
SHA-256: 4cd4876ffe3af26e84af1ace3b3ce09d330eba7466043619d8e84feba34e3623
Size: 44.98 kB - python-podman-api-1.2.0-0.2.gitd0a45fe.module+el8+106+15278325.noarch.rpm
MD5: c9c053634233e240da7c919a0f787424
SHA-256: 68dafd99aada5c43ebacd97d9e2c583a2fe76c425d815e5b3fc5aa68ee322742
Size: 42.00 kB - runc-1.0.0-64.rc9.module+el8+106+15278325.x86_64.rpm
MD5: 107a215ece85c9a51500f6d451b90e1c
SHA-256: ad7930a94758a99a7a2c929f706f37f83cf5072a834fa9eff4c3788acef5a364
Size: 2.60 MB - containers-common-0.1.40-8.module+el8+106+15278325.x86_64.rpm
MD5: 50f07dfb39f729c8b2ed23b62a5131c4
SHA-256: a660ea461c95056fa83fd5ed0dff6afa0eb51998c3ac7859c37b47d5c28d1243
Size: 48.04 kB - skopeo-0.1.40-8.module+el8+106+15278325.x86_64.rpm
MD5: d15fd8197c0bbd2fa77141b1841b2398
SHA-256: 786470aa8169b8ddc53170440b649a870a3c521ac3c3ccbc2891f38a805bca96
Size: 5.79 MB - skopeo-tests-0.1.40-8.module+el8+106+15278325.x86_64.rpm
MD5: 3e7ac8bc01c7a214deb807a1b6e144a9
SHA-256: 7d3a227c4916f59e6aa35c28b16843e16970ae7c00b23d53b2c4a4b75797535c
Size: 31.48 kB - slirp4netns-0.4.2-3.git21fdece.module+el8+106+15278325.x86_64.rpm
MD5: c3ee5ea9a68264dab869ce9be17e09d9
SHA-256: 03de2f247825609b12f2088136f1fb39712e064efc332cc5528f199fe08ea109
Size: 87.05 kB - toolbox-0.0.4-1.module+el8+106+15278325.x86_64.rpm
MD5: ef385dd6b4e42402ece403cd4e25d145
SHA-256: 235337b471a893bac47e13d511cb3be7f7aca704cc3b2cff7a9767721c070b7c
Size: 14.26 kB - udica-0.2.1-2.module+el8+106+15278325.noarch.rpm
MD5: a55bdbdfe55dd28be1b2ec0c588b81b1
SHA-256: bd65cd50daffbc8e0e00edbbf13bbbacd794839b9ebfca803c119a18d8137834
Size: 47.10 kB