Oracle Linux Security Advisory ELSA-2024-9459

http://linux.oracle.com/errata/ELSA-2024-9459.html

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

x86_64:
buildah-1.37.5-1.0.1.el9_5.x86_64.rpm
buildah-tests-1.37.5-1.0.1.el9_5.x86_64.rpm

aarch64:
buildah-1.37.5-1.0.1.el9_5.aarch64.rpm
buildah-tests-1.37.5-1.0.1.el9_5.aarch64.rpm


SRPMS:
http://oss.oracle.com/ol9/SRPMS-updates//buildah-1.37.5-1.0.1.el9_5.src.rpm

Related CVEs:

CVE-2024-9341
CVE-2024-9407
CVE-2024-9675
CVE-2024-9676
CVE-2024-34155
CVE-2024-34156
CVE-2024-34158




Description of changes:

[1.37.5-1.0.1]
- Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117178]

[2:1.37.5-1]
- update to https://github.com/containers/buildah/releases/tag/v1.37.5
- Resolves: RHEL-61857

[2:1.37.4-2]
- enable CNI
- Resolves: RHEL-62107

[2:1.37.4-1]
- update to https://github.com/containers/buildah/releases/tag/v1.37.4
- Resolves: RHEL-61114

[2:1.37.2-2]
- rebuild to fix  CVE-2024-34156
- Resolves: RHEL-57912


_______________________________________________
El-errata mailing list
El-errata@oss.oracle.com
https://oss.oracle.com/mailman/listinfo/el-errata

Oracle9: ELSA-2024-9459: buildah security Important Security Advisory Updates

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:

Summary

[1.37.5-1.0.1] - Drop nmap-ncat requirement and skip ignore-socket test case [Orabug: 34117178] [2:1.37.5-1] - update to https://github.com/containers/buildah/releases/tag/v1.37.5 - Resolves: RHEL-61857 [2:1.37.4-2] - enable CNI - Resolves: RHEL-62107 [2:1.37.4-1] - update to https://github.com/containers/buildah/releases/tag/v1.37.4 - Resolves: RHEL-61114 [2:1.37.2-2] - rebuild to fix CVE-2024-34156 - Resolves: RHEL-57912

SRPMs

http://oss.oracle.com/ol9/SRPMS-updates//buildah-1.37.5-1.0.1.el9_5.src.rpm

x86_64

buildah-1.37.5-1.0.1.el9_5.x86_64.rpm buildah-tests-1.37.5-1.0.1.el9_5.x86_64.rpm

aarch64

buildah-1.37.5-1.0.1.el9_5.aarch64.rpm buildah-tests-1.37.5-1.0.1.el9_5.aarch64.rpm

i386

Severity
Related CVEs: CVE-2024-9341 CVE-2024-9407 CVE-2024-9675 CVE-2024-9676 CVE-2024-34155 CVE-2024-34156 CVE-2024-34158

Related News