container-tools:rhel8 security, bug fix, and enhancement update

エラータID: AXSA:2022-4425:01

リリース日: 
2022/12/14 Wednesday - 08:42
題名: 
container-tools:rhel8 security, bug fix, and enhancement update
影響のあるチャネル: 
Asianux Server 8 for x86_64
Severity: 
Moderate
Description: 

以下項目について対処しました。

[Security Fix]
- Go には競合状態が原因で、ErrAbortHandler のアボート時に
net/http/httputil のリバースプロキシーがパニックを
起こす脆弱性があります。(CVE-2021-36221)

- OCI Distribution Specification には、Content-Type
ヘッダーのみを使用してドキュメントの型を判別している
ため、型を取り違えて解釈される脆弱性が存在します。
(CVE-2021-41190)

- CRI-O には、メモリやディスク領域を枯渇させる
問題があるため、Kube API にアクセスできる攻撃者により、
コマンドの出力が十分に大きい ExecSync リクエストを
介して、サービス拒否攻撃を可能とする脆弱性が
存在します。(CVE-2022-1708)

- Go の golang.org/x/crypto/ssh モジュールには、
不完全な暗号アルゴリズム使用の問題があるため、
リモートの攻撃者により、サーバーのクラッシュを
可能とする脆弱性が存在します。(CVE-2022-27191)

- runc には、空でない継承可能な Linux プロセス
ケーパビリティを持つプロセスを生成する問題があるため、
変則的な Linux 環境を作成し、execve(2) の間、
継承可能なファイルケーパビリティを持つプログラムの
ケーパビリティを permitted セットに引き上げることを
可能とする脆弱性が存在します。(CVE-2022-29162)

- Buildah コンテナエンジンには、補助グループの処理に
不具合があるため、影響を受けるコンテナに直接アクセス
可能で、そのコンテナ内でバイナリコードを実行可能な
ローカルの攻撃者により、機密情報漏洩やデータの改変を
可能とする脆弱性が存在します。(CVE-2022-2990)

Modularity name: container-tools
Stream name: rhel8

解決策: 

パッケージをアップデートしてください。

追加情報: 

N/A

ダウンロード: 

SRPMS
  1. aardvark-dns-1.1.0-4.module+el8+1551+8baf2a2b.src.rpm
    MD5: 9a91944ac921d0440778ab6284675d21
    SHA-256: d8cc9209c79456dc12319ff6db3df21818f673294ce38c45fa859359733dd47d
    Size: 11.06 MB
  2. buildah-1.27.0-2.module+el8+1551+8baf2a2b.src.rpm
    MD5: 6fd4315e096365871bf6803b684cc004
    SHA-256: 9118a3e6c0b7b20c4b58b7c67729bcdc1307e6d4d2c9ef7d24b95ec65ce7818c
    Size: 13.92 MB
  3. cockpit-podman-53-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: 15234eac9d351d0d53e00b6011c752e3
    SHA-256: a932299ea630f04d85619a094b22cc48d1b22e3c1689e2fc5297d66432b2d828
    Size: 1.10 MB
  4. conmon-2.1.4-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: 9b3c18381a41b023a79bb118f8b118c0
    SHA-256: 0e34cbc9e1ca4e7ca96d1f0dd5d03f50310b20a7066d1b73a74314f7fa4ca31e
    Size: 171.45 kB
  5. containernetworking-plugins-1.1.1-3.module+el8+1551+8baf2a2b.src.rpm
    MD5: a1026e3e030a3d4e6cf1d38fae663861
    SHA-256: 70645d9282a4a6083e57af1f0e32809405f32573039096a64ed7068d3cdedd69
    Size: 2.80 MB
  6. containers-common-1-40.module+el8+1551+8baf2a2b.src.rpm
    MD5: 9e9c5d9fe9a6e139f96c2626ee364af9
    SHA-256: c52a2b74b1aab522dcb6c71de0c70e6a068620001fc525f987a0c46739defcfc
    Size: 107.65 kB
  7. container-selinux-2.189.0-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: 199b67bc05515b7334b8483f75244302
    SHA-256: 8a31d320c67dcba243f70026883d1cbad286cebb888acd890c4f4d013c7fcff6
    Size: 56.76 kB
  8. criu-3.15-3.module+el8+1551+8baf2a2b.src.rpm
    MD5: 29ff7f4a179acbec664b848a338d8377
    SHA-256: 0bc79fc50f4b5cf4395fa17781a3b790747b15adde54a154cbda57c3158a4cd1
    Size: 914.17 kB
  9. crun-1.5-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: f49ec2488fafa5aad39b99df0bdc1fd9
    SHA-256: a0f32c9f1f99b1454984d9cbea6e36c86cd9dce6993dd6cbd0a7e0e68522a597
    Size: 1.89 MB
  10. fuse-overlayfs-1.9-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: f0fc8c634f812965ce59485702f1951e
    SHA-256: 016c12398b25e4b8b56721182e1ba5c1fd1256c4301af5f1930b6e3d5bb4fa70
    Size: 115.65 kB
  11. libslirp-4.4.0-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: 438668c6c3c22cf81ad5a842435a4c84
    SHA-256: 9c1d91f697fab3d68118338d46dfdd76d96db9cf21bf9dbb247b61e2cef12b4f
    Size: 114.78 kB
  12. netavark-1.1.0-6.module+el8+1551+8baf2a2b.src.rpm
    MD5: 42f52ebe379e5121472e1ad82aa11ec8
    SHA-256: 9ab4cff902e3278c6030b543e9f65d16c2b3e2e5bbe25452b7551fbfddc1fe4b
    Size: 15.21 MB
  13. oci-seccomp-bpf-hook-1.2.6-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: 9599eb38cf34f33d7704ad828dc8ffbb
    SHA-256: 4504c8cfb85e3da632bde666d9f3d3ba4d51a2c17e95edefe6ce9ecfd2a6877e
    Size: 1.27 MB
  14. podman-4.2.0-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: a350897ff4f05390ea9d10c9e12ce9f4
    SHA-256: 3dfca7f4ed2375db681100590711d8543642b7e81c6aec49374725f9f4e4523a
    Size: 18.01 MB
  15. python-podman-4.2.0-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: 192645213fee3831a5e04a8f55f3f52e
    SHA-256: 06c270ed98c49d14c0c47d4ccdb8f5af3a1fde5121386f8a66344aa56beefb31
    Size: 80.76 kB
  16. runc-1.1.4-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: 70c5935b509b5e76c4c040fd134f8210
    SHA-256: 5c22ba3d6f995d337c7ce3058fb136cf3d034aac4ff360eaad0a69d3c9e5c48f
    Size: 2.21 MB
  17. skopeo-1.9.2-1.module+el8+1551+8baf2a2b.src.rpm
    MD5: 8f768d6b5d41acdc683fadd083949550
    SHA-256: 22310e2c04907ca857de157bb5daf3cf97f2e1df41ce0c5892cf07a6fbd2b44e
    Size: 6.38 MB
  18. slirp4netns-1.2.0-2.module+el8+1551+8baf2a2b.src.rpm
    MD5: 67931ba8827b2fee2553e01f3e0ca50c
    SHA-256: 096d9447a6aa5c30fd8ed1b2e6d0c3b4b0c13b6bcf147ea7f22c8d291b7a8904
    Size: 72.51 kB
  19. toolbox-0.0.99.3-0.6.module+el8+1551+8baf2a2b.src.rpm
    MD5: ef12d646e3cb4bdbd23484a6d578332d
    SHA-256: 01c79a6b90a25d50b768f8496e0015a631758313eea83bc95560ca3cdceac76b
    Size: 5.88 MB
  20. udica-0.2.6-3.module+el8+1551+8baf2a2b.src.rpm
    MD5: ec29bafddb82adede58f2972eb8bc5e4
    SHA-256: ded8371f652caae20fc1312747a6d5a19cab3d2457092de1958fb2650b8b9878
    Size: 133.85 kB

Asianux Server 8 for x86_64
  1. aardvark-dns-1.1.0-4.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: b4fde0e01f6b4a89f6ef37b7cf043cfe
    SHA-256: dcb0b6a73fa3751fbdce3b950c0d62fa0fda212f5521e3f7c82c45e6ff949fd5
    Size: 0.97 MB
  2. buildah-1.27.0-2.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: ace2e2e22964267ac26eb775244c4922
    SHA-256: 908d7230b9bd0fcbc6fde0cb38f916aa17fce1bc920006dafb9d87c218dd1257
    Size: 8.07 MB
  3. buildah-debugsource-1.27.0-2.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 8b2efd07d1ea5e7681a5b6f8baf82030
    SHA-256: 89ca3687062d36474db55a2ce50171dbf5c5f8bb18c6b83cb7020a2c22960ebd
    Size: 3.51 MB
  4. buildah-tests-1.27.0-2.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 2874fda7e715a24c2a93c1035132bec7
    SHA-256: 44a218d92f4c0f1330d4cebcd03ab88cce12c617ce49c8b57f9e8be8db2628b5
    Size: 26.32 MB
  5. cockpit-podman-53-1.module+el8+1551+8baf2a2b.noarch.rpm
    MD5: b5766c667b4911c7be6ccbc8c7fb0e1a
    SHA-256: 9d9d64ba155e8bc6b6ee00d4975e646294d2e4fffd2779244797af5c17dc90d4
    Size: 545.98 kB
  6. conmon-2.1.4-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 3821e0c497fe7d34ae17e5baa1129385
    SHA-256: 0033b500762de995534095771d867ea21e243bf65761afd21bd8a2fc442d61a7
    Size: 55.35 kB
  7. conmon-debugsource-2.1.4-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 4f8dce00bb612ef259975bd912462322
    SHA-256: bbda12ec3143c18260e8608d5009430a9d3a3a76700e333315f0341f7bf8beb3
    Size: 48.64 kB
  8. containernetworking-plugins-1.1.1-3.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: d5a47f60b2974c9b3e870599c6a2332e
    SHA-256: 88221681bb87fde27fa44e8a9177b13650c758673ae5c25de3fb961d0aa6df6c
    Size: 18.09 MB
  9. containernetworking-plugins-debugsource-1.1.1-3.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 697ef0945e2ff1c1e2c16e580824193e
    SHA-256: 4d58a48a00dc95deccac889cdfed83ea04cb369a5b50f67ae84ecbea37ea04ce
    Size: 376.29 kB
  10. containers-common-1-40.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 047c70c54bd240cc3e997fe804829943
    SHA-256: 81a7fe4bebdde8bc89e71b52a79368bf695985bd476e59bf89aced2b6ca49753
    Size: 111.50 kB
  11. container-selinux-2.189.0-1.module+el8+1551+8baf2a2b.noarch.rpm
    MD5: 85366f1b77efdd467bfbf80f3dc8fddb
    SHA-256: ba6612d8c05357dc8bb5afef3f426c836cca85e0b0d28d63e8deff5a7d117a07
    Size: 59.09 kB
  12. crit-3.15-3.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 76cc9e651eb9557d796ecddca19e7b7f
    SHA-256: d5f8f34b5d520603f691633cf5267ac79ebc052942ff7a09a235906cfc51e19f
    Size: 18.59 kB
  13. criu-3.15-3.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: f720ee180e884df3a66c0c541a6ed4a7
    SHA-256: 3c378207a3beb0c21156951f7836d442ac191b81f22f151b2ec574d51886c120
    Size: 516.60 kB
  14. criu-debugsource-3.15-3.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 20e75b71bd78619fd44b61d5c16adb45
    SHA-256: cf6f67877fa6a418b0bfde1e93837f264882a0084590718e9975e5b1cf148191
    Size: 675.35 kB
  15. criu-devel-3.15-3.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: d93aa61b3309d9dedd51addbd60f53a4
    SHA-256: 98104bb2ec91a2785ac0ec8f0ac4f240824237f5b8ee5bd51f1ff8a601506d33
    Size: 23.81 kB
  16. criu-libs-3.15-3.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 231dae64db5502d9a16eee07805f08c2
    SHA-256: d0ca41097f6eca228509fd84c2a42f0c6cee65a77c0e7dcab0669fd9fad77a29
    Size: 36.65 kB
  17. python3-criu-3.15-3.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: bd8cb34e762e8f889f4a472f957c818e
    SHA-256: 031b73be6b494cef3540ecb5e22ed614af9b7fc0cf24ea6284a4aba238eb408c
    Size: 168.82 kB
  18. crun-1.5-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: eeed234dcd39547f3518c1639c804b9f
    SHA-256: 9b7e2249bb5c6f8408ed849c4695fe9f9d597a4d6dfc0ab1d92f9cd11c47fd54
    Size: 211.85 kB
  19. crun-debugsource-1.5-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: bb5a1d441b31941849c42a344a1041a2
    SHA-256: 3a93f5b41cf5c09fbb820cdf9862c3fdf20a2f6374df7eb7ad19b98d7c7c014d
    Size: 159.32 kB
  20. fuse-overlayfs-1.9-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: d734dcba7d5d5f14bb506cc65c5da3c3
    SHA-256: d97b13a6e19899d5f5f8e439d3d4519be807779679cbac00d4e8f478b895af04
    Size: 72.26 kB
  21. fuse-overlayfs-debugsource-1.9-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 2af1db84c6e685fefd330c825bdf87d4
    SHA-256: 70bf94f511753539e2a5afba3857ae0d658f0a7278cf2232d197e8b2cbb8f3a8
    Size: 54.18 kB
  22. libslirp-4.4.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 1abd4f5a6f444c31e336eea34dc46653
    SHA-256: ca27bee231e78ee173f6879bd7246e14614bf1a0eae4ceb727199f7f4874eab8
    Size: 69.13 kB
  23. libslirp-debugsource-4.4.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 16957d8547f31aec620407adb6fc0a3a
    SHA-256: 3ee4594ea258891c58834913398b7990e1fee15fbbf34adb7fb332c5fc6f71ba
    Size: 114.43 kB
  24. libslirp-devel-4.4.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: c68da2b3d7444bb4cfb163abd9ccaad1
    SHA-256: fcb2f3530819339317f8bc452aa98a191063fb47eb6b600332b2cf6b8825345f
    Size: 11.29 kB
  25. netavark-1.1.0-6.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 972ac06e91e2a46f078b1b5f68a1e28a
    SHA-256: 0b251a995866b8c2e3a37e28de8d01dbf3abb4b133acdcf6048c2080f9e7df9b
    Size: 2.16 MB
  26. oci-seccomp-bpf-hook-1.2.6-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: fbfe3937e129164955a5f686943f3656
    SHA-256: 52f43540d57a6ab01600d020cefe117de5b652f1fe9da06c4d38bc0f624ed1cc
    Size: 1.00 MB
  27. oci-seccomp-bpf-hook-debugsource-1.2.6-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 4aa52c0715452686cf43909c268683cd
    SHA-256: 98c53aea536b48cb0192d55af644dfa056ca7d8defeb70f859fed25ab81eee49
    Size: 186.64 kB
  28. podman-4.2.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 54f3882adbf758d451aa5e4256893e3f
    SHA-256: 651b86ec8e2d4a178ff3ac8d32cb0987ab56671c79ab16f6cc6a91acbd92b384
    Size: 12.41 MB
  29. podman-catatonit-4.2.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: a0d3185d6047e7ad56c817227e91fd2c
    SHA-256: d83b63ee3329fe69962a2936eee539ae8ba25060ce918fb49cc5e4290c53f34e
    Size: 354.59 kB
  30. podman-debugsource-4.2.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: f22bfac4f9a3437fe1caa6143828b478
    SHA-256: 197c66c697e6dc4a41ab77f323b108a3ec7549a6061db9f1f3bc15fd2eb9848c
    Size: 5.80 MB
  31. podman-docker-4.2.0-1.module+el8+1551+8baf2a2b.noarch.rpm
    MD5: d19a0b57ade039c7c2557b3d7308395f
    SHA-256: 4fe4a9184a36fc15869f02715f8d4dd1ff1c735cd3ef09ce5825366a00a40147
    Size: 67.91 kB
  32. podman-gvproxy-4.2.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: fc80846fd3c55b683ff4b2a1e9f250cc
    SHA-256: 411c8b7a534d6cadf83808009de37e97d1fc909e76a0719546c99fd1ff28da13
    Size: 3.32 MB
  33. podman-plugins-4.2.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 5f0d08cddb314fbbf3ba71ad27db041a
    SHA-256: 0ef6f2531662cede990900a156ae6d457938a18d5523bebedfb9630c1b08a160
    Size: 3.09 MB
  34. podman-remote-4.2.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: c9a09976de3885e7ae355b8c750eb2b8
    SHA-256: 2544e63447b2e598d30a507120ae491227b77c18a5bc623f5721757c4917de52
    Size: 8.32 MB
  35. podman-tests-4.2.0-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 50793168a653c91d81e56d91b26c731f
    SHA-256: c935ba143f35f74f0b9e33e679144faa65a67dc10108227cf699054bc6ae0cd5
    Size: 187.33 kB
  36. python3-podman-4.2.0-1.module+el8+1551+8baf2a2b.noarch.rpm
    MD5: ef966af240656430f1ba75ce0421066a
    SHA-256: f91c4a7a7bd192cb57f3fce873d6bfa462a8ff0ccdfab640adfc35e5eaf9e4a4
    Size: 149.93 kB
  37. runc-1.1.4-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 748e3ba8613580be285141138ab855e4
    SHA-256: 67ec0c3f484d0a5cbddae58f8567bf66b4a36e236c515cb660d9dab109b198d6
    Size: 2.94 MB
  38. runc-debugsource-1.1.4-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 3728c19319a920c190e4c95ac993b1d4
    SHA-256: 17e57d9433c29337d7e430898f07b57a10c64b569f2104418aa68f3d9bc8ae3d
    Size: 867.78 kB
  39. skopeo-1.9.2-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: a4c8f7c8160357b12af683cdf939bf73
    SHA-256: fda041a248e9abee404c6b3887553a6d4bf0aab414913ff7c6afe6a5370db898
    Size: 6.78 MB
  40. skopeo-debugsource-1.9.2-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: c20de5a2fbf4a16382940840cb1959e7
    SHA-256: 8feccefed9ddd39ab9a273f1a07139672e85a27280168fd300bd7179e11bb6f3
    Size: 2.69 MB
  41. skopeo-tests-1.9.2-1.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 76c4f4b863aac14f61d632fc0ad5b3fa
    SHA-256: a2842319f638d1a7433e50021849ff7f346d4a54fca9d685a31d2f0e9f401aba
    Size: 781.20 kB
  42. slirp4netns-1.2.0-2.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 7d7e8847a7ff5c1661b411f67d34d69d
    SHA-256: 3e68256d86299edda29ab96c0fe7a8b6b68f0c2f6d63ce8aeb18d2d0f4213a7f
    Size: 52.94 kB
  43. slirp4netns-debugsource-1.2.0-2.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 91f773e918c421471bfe371c40335358
    SHA-256: 86c20959832f1c25fd8c4e78cea527d137e89045a3f632eea6e6a23709be1e85
    Size: 41.23 kB
  44. toolbox-0.0.99.3-0.6.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: cc67020162a10abcb1ffef108d0edb69
    SHA-256: 2d88d29d8c67cedf55c1478f302e5fffd8923c1ac24d240ea3d359e8ebdeea85
    Size: 2.21 MB
  45. toolbox-debugsource-0.0.99.3-0.6.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 8d37156bb5628a170728eae721473a23
    SHA-256: 773b0aaff75331775f1c5fe6feea1508c6626098ff2c731f6da64c053c592968
    Size: 449.60 kB
  46. toolbox-tests-0.0.99.3-0.6.module+el8+1551+8baf2a2b.x86_64.rpm
    MD5: 6db8d301b921b73202e337be1c9ef5cb
    SHA-256: 334ca77777e824bf9fb08112103cdae438533b9bdb4ce373af4b2b658a74bf01
    Size: 30.35 kB
  47. udica-0.2.6-3.module+el8+1551+8baf2a2b.noarch.rpm
    MD5: b0946e85874067184acae878000995ba
    SHA-256: 8f2416478e9960bf40c31e42ea67c3c56a3512b576ca7857e16499d60527f07b
    Size: 47.92 kB