container-tools:rhel8 security update
エラータID: AXSA:2025-9676:01
リリース日:
2025/02/19 Wednesday - 15:35
題名:
container-tools:rhel8 security update
影響のあるチャネル:
Asianux Server 8 for x86_64
Severity:
High
Description:
以下項目について対処しました。
[Security Fix]
- podman および buildah には、"--jobs=2" オプションを指定
したコンテナのブレイクアウトとコンテナのビルド処理間に
おけるレースコンディションの問題があるため、ローカルの
攻撃者により、細工された Containerfile によるコンテナの
ビルドを介して、ホスト上の不正なファイルやディレクトリ
へのアクセスなどを可能とする脆弱性が存在します。
(CVE-2024-11218)
Modularity name: container-tools
Stream name: rhel8
解決策:
パッケージをアップデートしてください。
CVE:
CVE-2024-11218
A vulnerability was found in `podman build` and `buildah.` This issue occurs in a container breakout by using --jobs=2 and a race condition when building a malicious Containerfile. SELinux might mitigate it, but even with SELinux on, it still allows the enumeration of files and directories on the host.
A vulnerability was found in `podman build` and `buildah.` This issue occurs in a container breakout by using --jobs=2 and a race condition when building a malicious Containerfile. SELinux might mitigate it, but even with SELinux on, it still allows the enumeration of files and directories on the host.
追加情報:
N/A
ダウンロード:
SRPMS
- aardvark-dns-1.10.1-2.module+el8+1850+e1727464.src.rpm
MD5: 2d295630dce2a9c4dd9c4be77cb23672
SHA-256: 5bbd9dbca3eaa9fdb0762cea3c28b943127dbdf63fb8cca4379c85a55ddf4ed1
Size: 6.14 MB - buildah-1.33.12-1.module+el8+1850+e1727464.src.rpm
MD5: 6c74dffb3eb16d199db5c0917507578d
SHA-256: 79095b82337781f0ec5460479d9ca7c3e72b39c7e444989ba8a314a0068dd296
Size: 17.52 MB - cockpit-podman-84.1-1.module+el8+1850+e1727464.src.rpm
MD5: eb25f195413f2d93ebbb98dd618e0634
SHA-256: 8d5e5c9234c869a70fac649dea1853117625030d25e6e6c1ba4d3f8eabd7f798
Size: 1.27 MB - conmon-2.1.10-1.module+el8+1850+e1727464.src.rpm
MD5: dc37462e5ae0d627e1347930344ea222
SHA-256: 0cf0a81dc67442f542fdbfa1c29b49687d3500c40ad4a8c67744b4a9c4c32e35
Size: 133.59 kB - containernetworking-plugins-1.4.0-5.module+el8+1850+e1727464.src.rpm
MD5: c1e168fa1c94cf4f0e3982762a281a08
SHA-256: 04e22b9d8788d4c4ba1eca23e5db006144f28f677c0a41b7ee99bcc46076be96
Size: 3.62 MB - containers-common-1-82.module+el8+1850+e1727464.src.rpm
MD5: 2b4c8e7cebe646deb25ba70bacea7b84
SHA-256: c2e94e30d4c9cee5b95f30592d2d4e262045e2a89bf6e3e6f5ef39ba9cbf23f5
Size: 145.63 kB - container-selinux-2.229.0-2.module+el8+1850+e1727464.src.rpm
MD5: 056b3855db07ba89de577875a1a5a674
SHA-256: 2bf55092cc746b69876d84b57f32c86e9705b6c1ee2392f89978816609a7fa67
Size: 65.58 kB - criu-3.18-5.module+el8+1850+e1727464.src.rpm
MD5: 749f8de7bc180b0519230a7ab0a76679
SHA-256: b81167db8bcd5048fda5c91087297fa82381993284f27e3bda98e51a08b4e433
Size: 1.32 MB - crun-1.14.3-2.module+el8+1850+e1727464.src.rpm
MD5: ec1d408afd5634e3feb2ee45b1094802
SHA-256: 736a9449800d88107d42351f87b853bc3e0908c8564de405faa1007e56225705
Size: 1.68 MB - fuse-overlayfs-1.13-1.module+el8+1850+e1727464.src.rpm
MD5: 643a7c26de07adf68068144c40757333
SHA-256: 6b8348a899f38972961884e606263a2ead26b16524762624a1eb422edf67af6a
Size: 112.28 kB - libslirp-4.4.0-2.module+el8+1850+e1727464.src.rpm
MD5: 7023ae5549f5eb8ba59bb7a5be07547f
SHA-256: 05a3977e15ab6f794497bb3418a66eadf7788d5020c99293885d4021b43adf26
Size: 114.98 kB - netavark-1.10.3-1.module+el8+1850+e1727464.src.rpm
MD5: 623b1de999e5aeae1297b784bd9331ec
SHA-256: 305d3f3ed3974b0ab26a2a80a87f4372bdafe3646858cfb7044a4e658020818b
Size: 15.51 MB - oci-seccomp-bpf-hook-1.2.10-1.module+el8+1850+e1727464.src.rpm
MD5: 14e26339b6334e79241a5ca061bfce03
SHA-256: 84a58192683088ac9a5f9950edafce7002dc4e518bb1499730301535a6ef08e0
Size: 1.43 MB - podman-4.9.4-19.module+el8+1850+e1727464.src.rpm
MD5: 690a15e6e909ea7719888594cdfcf69f
SHA-256: 376ca9f1493e2a8a26d64e2c1a11a402a47769b1c1597ff4a07b083117e4071a
Size: 32.57 MB - python-podman-4.9.0-3.module+el8+1850+e1727464.src.rpm
MD5: e6ff19c44430967bd076c81920df7a8c
SHA-256: 5beefe07f62d632baf3eaa1b2abfcbf4668aa637a0b9bda68cc658dc916bbae0
Size: 188.74 kB - runc-1.1.12-6.module+el8+1850+e1727464.src.rpm
MD5: 8fa9c1300f0198601faf3106c6cfb0ba
SHA-256: 1c1845fbb7c116094ff9cf07cb00fd7d0d1b7afd567a3a8216bfc74d763f4587
Size: 2.39 MB - skopeo-1.14.5-3.module+el8+1850+e1727464.src.rpm
MD5: 6f108f75dd167289381616f786c95dbf
SHA-256: f9ed5cdf975d48ac1d567a242604fcdf0f5bc7f6066fa7dcc5196a9d7f8d1e0d
Size: 10.00 MB - slirp4netns-1.2.3-1.module+el8+1850+e1727464.src.rpm
MD5: 6f6ddd80766e44ebc586fa5432e57028
SHA-256: 73451dce58b3cf5210d3a9df81c4582a3ae501f14ba9a68a476502eb98f33183
Size: 76.05 kB - toolbox-0.0.99.5-2.module+el8+1850+e1727464.src.rpm
MD5: 5aa6b739bef389ac13575a923acd0ffc
SHA-256: 806a82467698071ed358445a2e75e881b07e71c975085fe35d431abacf7063ca
Size: 1.10 MB - udica-0.2.6-21.module+el8+1850+e1727464.src.rpm
MD5: e172075b7479b55765ace7b2ba0584d8
SHA-256: 4f80a4a44cfc4b3f2edcfde23e65c5f0e96f1a752c863089e0aa76d4731958cc
Size: 134.32 kB
Asianux Server 8 for x86_64
- aardvark-dns-1.10.1-2.module+el8+1850+e1727464.x86_64.rpm
MD5: b3621e43b73b330d7bfe45f4aad490fb
SHA-256: d6122d533a79a598ce802231c14c92ee44e70fd6d6d7bbb20f3d918ff2060ee6
Size: 0.96 MB - buildah-1.33.12-1.module+el8+1850+e1727464.x86_64.rpm
MD5: 1741b5b2d0250013d88b6c8742b0f584
SHA-256: 054bde11debd05df77e91fc5d9327cb80955dab259c88a76786284c2352a926f
Size: 9.83 MB - buildah-debugsource-1.33.12-1.module+el8+1850+e1727464.x86_64.rpm
MD5: 6f84d5c3d76e22d31ce73c2149b4ad8a
SHA-256: d5d57fc867019b6ad9d7cd263bd154543cb0f5c5634dfc144ed3940d65e2be66
Size: 6.13 MB - buildah-tests-1.33.12-1.module+el8+1850+e1727464.x86_64.rpm
MD5: ff3525216bdd77c85506b2c0f97f7014
SHA-256: bb38139147edb683f1dcc768769a63ce7702a38e334067cfdf7508fdc9fbfa8a
Size: 31.09 MB - cockpit-podman-84.1-1.module+el8+1850+e1727464.noarch.rpm
MD5: 8bb1a9dcb68867e24ce64c088ec33b1d
SHA-256: 71abe7ad566870e58b5bb61725d7f1c1cbbf46356dd27391a2e8caf550c9d174
Size: 682.92 kB - conmon-2.1.10-1.module+el8+1850+e1727464.x86_64.rpm
MD5: 991b3435d43965725ec8d0c1f6163769
SHA-256: ee23150fc41e8214673b53090a18e765a8767ca8b91ed527b7b6f53f7f7862dc
Size: 56.82 kB - conmon-debugsource-2.1.10-1.module+el8+1850+e1727464.x86_64.rpm
MD5: e2bd348350e320a7a882e0569b9ba327
SHA-256: 3d922131ebf2fdd4446dcd4bfe29405de1694bd2c75bc63cd72bff9754f86822
Size: 50.46 kB - containernetworking-plugins-1.4.0-5.module+el8+1850+e1727464.x86_64.rpm
MD5: d3a15b15d1125bb282b7839ed68ede1d
SHA-256: 3095df196a6491490a1e72d1310068064cf9b332ec8254b76b1ff1e0113f6332
Size: 22.20 MB - containernetworking-plugins-debugsource-1.4.0-5.module+el8+1850+e1727464.x86_64.rpm
MD5: 3d694f612ae5c75068c3f5dcd8ede6e3
SHA-256: 2b1327ba5105b42b98ee9ab77627fcec3b264d57cc6fe1f072a312610a4cbbc2
Size: 429.95 kB - containers-common-1-82.module+el8+1850+e1727464.x86_64.rpm
MD5: 0b889f37bb17c0a9d95143e59d29194c
SHA-256: 19a208aea516816054b4a58c321f2de5eb8718a047f15886548c6c062dc6285e
Size: 142.03 kB - container-selinux-2.229.0-2.module+el8+1850+e1727464.noarch.rpm
MD5: 91764f63b19150813aa9d9b34f6b3d5e
SHA-256: eeef7edf06ef04b31fa2ae8af12235adcba136c6a7e0db4d294025617c0b5b25
Size: 69.43 kB - crit-3.18-5.module+el8+1850+e1727464.x86_64.rpm
MD5: 9af0727220e42cc96297c826cd2e0dd0
SHA-256: b35754d5d734f89aeb39cfd14e4aa2e2e89cc0dfa8486f335358a1e7c880bc08
Size: 22.12 kB - criu-3.18-5.module+el8+1850+e1727464.x86_64.rpm
MD5: a8737db121b503e2f2dcfef49e931955
SHA-256: a9197ee0abdf636862257b43d16c1186d914647eb92208ce87f074be39a9078b
Size: 563.12 kB - criu-debugsource-3.18-5.module+el8+1850+e1727464.x86_64.rpm
MD5: 8eee4f19163a72b5e1e4440c5422b1bf
SHA-256: 6be9ff7cf4f9c2be5aee6c6fcf8da1d9abf9234b42dd838bb17f7353f78cb90a
Size: 729.71 kB - criu-devel-3.18-5.module+el8+1850+e1727464.x86_64.rpm
MD5: 5d9ecd4def1920bd1b2e5e5e09cf1bce
SHA-256: a9db3ae064663ec014e613efdaebdc1d1266de651da0e04de63fb575bc7652d3
Size: 28.23 kB - criu-libs-3.18-5.module+el8+1850+e1727464.x86_64.rpm
MD5: 8a4dfb5aed66af10e33ce93cc1d35c2c
SHA-256: 4f3f58556baf30d363d21bfd26753a7369dcdd28884a5900f84b6be87a822b7b
Size: 38.16 kB - crun-1.14.3-2.module+el8+1850+e1727464.x86_64.rpm
MD5: 695f33b5dcb90c9874643352cac057d9
SHA-256: 5969bf3e7de670dbeb1af49fa58583bd8f4cd9e7b73aeabea317d1bcc262bfdd
Size: 256.51 kB - crun-debugsource-1.14.3-2.module+el8+1850+e1727464.x86_64.rpm
MD5: 0753484da536769b83ae27376f573a3b
SHA-256: b11b84768a89a09ff69b50984b74d2e9af42527813d58ad563d429cd8dd56e9d
Size: 204.13 kB - fuse-overlayfs-1.13-1.module+el8+1850+e1727464.x86_64.rpm
MD5: dbd9b2f9e0ff927137169b9f56d6fb24
SHA-256: 40ad4a7d2670a943ec818cf16191a690cb4960733b683ebe75b14010f5ddfdcb
Size: 68.72 kB - fuse-overlayfs-debugsource-1.13-1.module+el8+1850+e1727464.x86_64.rpm
MD5: 2cb4ad5702aa43d4ecc66fee2467269b
SHA-256: b403b714dc979c45190c8a57920b618614a9329a50fe03dc89411e9aaed76579
Size: 55.61 kB - libslirp-4.4.0-2.module+el8+1850+e1727464.x86_64.rpm
MD5: 1912450c521873eac3cf1ee0df8760eb
SHA-256: 6bd9b5b693cd5dc21597bc22b45bf61955407969148396c0218b06e2ce994eef
Size: 69.28 kB - libslirp-debugsource-4.4.0-2.module+el8+1850+e1727464.x86_64.rpm
MD5: cb686dddc164e3740c809c1479dc0130
SHA-256: 60eedb8bb03bb41a596f813d5b817922f58b35e9a3180e517f4f261df70646e2
Size: 114.54 kB - libslirp-devel-4.4.0-2.module+el8+1850+e1727464.x86_64.rpm
MD5: f22123e2e53ca0f89bf3cebcec2842e0
SHA-256: d321c47424c86d22d5265bf8cc5b970645bf07c17dc51c854245701478b0fe88
Size: 11.41 kB - netavark-1.10.3-1.module+el8+1850+e1727464.x86_64.rpm
MD5: f7794a70b8ac7b506a23a9e155f388ae
SHA-256: ba321cb8cd83a5d32a524a0df50ab625b3d6d33c874548beb8088285cafc895a
Size: 4.10 MB - oci-seccomp-bpf-hook-1.2.10-1.module+el8+1850+e1727464.x86_64.rpm
MD5: c7007071ddf4e41dd745b27d300213fd
SHA-256: c65880f548a2558032dc0d1b5696c45212a727c96e6f9a329a4ff91ddace2ec2
Size: 1.16 MB - oci-seccomp-bpf-hook-debugsource-1.2.10-1.module+el8+1850+e1727464.x86_64.rpm
MD5: 5ed2d4a433c5fdc5569e663917592a5a
SHA-256: 727b3d962efe09dc3d846d9bea8debe7a853564741095666721ddcc11fcb1d29
Size: 247.94 kB - podman-4.9.4-19.module+el8+1850+e1727464.x86_64.rpm
MD5: fe727ecd2f5ef1d803d29a9c870c50cd
SHA-256: 9ed219d5d95045f0ce27ba71e8ee51df1b8643b4cf946024b0035c9f1a52ef81
Size: 16.30 MB - podman-catatonit-4.9.4-19.module+el8+1850+e1727464.x86_64.rpm
MD5: fb8c19db174950da0f689289264966d1
SHA-256: fc32f44a0edc87420138af755bac8d43d99047f0c6c810b4451fe131be44771e
Size: 374.48 kB - podman-debugsource-4.9.4-19.module+el8+1850+e1727464.x86_64.rpm
MD5: 0a6ed4ddc3f03c1c484c8ea0f70f194c
SHA-256: 3356780f55ee0392e2264f0755c7699c0912726ef7b3f1b4e4f4dc5be54bbf26
Size: 9.34 MB - podman-docker-4.9.4-19.module+el8+1850+e1727464.noarch.rpm
MD5: f154c358fd37e267d640b44c37380bb7
SHA-256: 481a562c4d984ef4e784f8131b76a5326b319c59ddcee89258bad64aa3a94b33
Size: 115.22 kB - podman-gvproxy-4.9.4-19.module+el8+1850+e1727464.x86_64.rpm
MD5: fd22e1aa0ef8ce978d0a24d1314ecbdd
SHA-256: b0c9ae868fb521d91db2c472cc22a63058629794ce39acedb42883ce263a9eda
Size: 3.97 MB - podman-plugins-4.9.4-19.module+el8+1850+e1727464.x86_64.rpm
MD5: 48f9f796c3392a33184ecfa95a300b3b
SHA-256: 9d402fc1e56837ca842a1bd41187534c06589c15df742263e55b3859d862ff96
Size: 1.37 MB - podman-remote-4.9.4-19.module+el8+1850+e1727464.x86_64.rpm
MD5: 05696ae791d6cdbb55b8fe577d3aa095
SHA-256: 1ceeee67b5af5e2713d5dd4cc8daa7ec7f8c33a35dd2ea840bd6d9cb0e05b39d
Size: 10.64 MB - podman-tests-4.9.4-19.module+el8+1850+e1727464.x86_64.rpm
MD5: f1d259e71b89a51d58866337cfaec175
SHA-256: 5e02bbf2e1e5271cc240228354049c85af40fe882fd5a2419dfb1522a27a2857
Size: 267.19 kB - python3-criu-3.18-5.module+el8+1850+e1727464.x86_64.rpm
MD5: f975d7336ad040dbf30d6b9f08a86875
SHA-256: eff154b76df1962b25946c7976a556b46ae80c40a0ac2e526d6072e75c378b6e
Size: 177.28 kB - python3-podman-4.9.0-3.module+el8+1850+e1727464.noarch.rpm
MD5: 5c462db81581351df96f9436fd9d67b5
SHA-256: e77db579e843431d2afa4d5e1330907d8a4583273621d61a755517f884abd19a
Size: 155.53 kB - runc-1.1.12-6.module+el8+1850+e1727464.x86_64.rpm
MD5: 01a00743b17c63553f1d93a60f1fe44c
SHA-256: 954f7cb00efccaf425314050a180f13c6da6b23c027d137ed02ac9b896df0cc1
Size: 3.19 MB - runc-debugsource-1.1.12-6.module+el8+1850+e1727464.x86_64.rpm
MD5: 69323c4d36c9a0f87d9e5ab08a7c716b
SHA-256: fbbde4343377eed2ef5384220c0e385af9c561cf2e07d6024cbde41fd82bfaad
Size: 897.28 kB - skopeo-1.14.5-3.module+el8+1850+e1727464.x86_64.rpm
MD5: 4e2211f11a6b592dac8e65cf3d34c484
SHA-256: 3e88ea3a91b4b00feb38052e538bdcf308414d62fb480ebb16cf237400d74bbc
Size: 8.98 MB - skopeo-tests-1.14.5-3.module+el8+1850+e1727464.x86_64.rpm
MD5: 0653393e2ff58d2c19655cb6b2c77a69
SHA-256: dda41f975161d6ebefee0003a4abe293b1f88d619ac5d1611a3f34f8b7b0e5d5
Size: 785.40 kB - slirp4netns-1.2.3-1.module+el8+1850+e1727464.x86_64.rpm
MD5: 0aa0261870e649207ee1bc24b1de1c21
SHA-256: c3cc0a5f1a3a52820eea863e58c309582edfcd1cf8f8b9c3d33c7d3413a6d84d
Size: 54.91 kB - slirp4netns-debugsource-1.2.3-1.module+el8+1850+e1727464.x86_64.rpm
MD5: eb2a9ba10df2d1bb0ceb4be818349c12
SHA-256: f69cdad161f628910222e5dcd5d07e99f2d0c4ed724235acbd9b862b04e3aac5
Size: 43.73 kB - toolbox-0.0.99.5-2.module+el8+1850+e1727464.x86_64.rpm
MD5: 6752e8271360e4c1e9dea85495fdd41c
SHA-256: 5b22df1800298cd751a3df2024cfb71ee63ca537f6192e8699a23bd99ffcbf51
Size: 2.58 MB - toolbox-debugsource-0.0.99.5-2.module+el8+1850+e1727464.x86_64.rpm
MD5: b82f36e82a036f08e3c68adcc9c442e9
SHA-256: 25b657504a62693c5de4d9e4061f42ba77b1e799e0cdbb2237a6adb0f24d065c
Size: 571.81 kB - toolbox-tests-0.0.99.5-2.module+el8+1850+e1727464.x86_64.rpm
MD5: 5429110fabea0bfad0ac4f9814f81ac5
SHA-256: 8d22db1b8ed8a6cc3d1e0922ea2cbbe1e1fd9eacda74a735ba228d03d159c2a3
Size: 43.69 kB - udica-0.2.6-21.module+el8+1850+e1727464.noarch.rpm
MD5: e58ca5e0e223fca626e0af20973b37ee
SHA-256: 957f41a1fc09d6e1fc5457d6f089d00530775800ca708bd97097e138a92a4150
Size: 48.26 kB