Rocky Linux 9: Critical Security Update for Buildah Addressing Multiple Vulnerabilities
Summary
An update is available for buildah. This update affects Rocky Linux 9. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE list
RPMs
buildah-2:1.33.7-2.el9_4.aarch64.rpm
buildah-2:1.33.7-2.el9_4.ppc64le.rpm
buildah-2:1.33.7-2.el9_4.s390x.rpm
buildah-2:1.33.7-2.el9_4.src.rpm
buildah-2:1.33.7-2.el9_4.x86_64.rpm
buildah-debuginfo-2:1.33.7-2.el9_4.aarch64.rpm
buildah-debuginfo-2:1.33.7-2.el9_4.ppc64le.rpm
buildah-debuginfo-2:1.33.7-2.el9_4.s390x.rpm
buildah-debuginfo-2:1.33.7-2.el9_4.x86_64.rpm
buildah-debugsource-2:1.33.7-2.el9_4.aarch64.rpm
buildah-debugsource-2:1.33.7-2.el9_4.ppc64le.rpm
buildah-debugsource-2:1.33.7-2.el9_4.s390x.rpm
buildah-debugsource-2:1.33.7-2.el9_4.x86_64.rpm
buildah-tests-2:1.33.7-2.el9_4.aarch64.rpm
buildah-tests-2:1.33.7-2.el9_4.ppc64le.rpm
buildah-tests-2:1.33.7-2.el9_4.s390x.rpm
buildah-tests-2:1.33.7-2.el9_4.x86_64.rpm
buildah-tests-debuginfo-2:1.33.7-2.el9_4.aarch64.rpm
buildah-tests-debuginfo-2:1.33.7-2.el9_4.ppc64le.rpm
buildah-tests-debuginfo-2:1.33.7-2.el9_4.s390x.rpm
buildah-tests-debuginfo-2:1.33.7-2.el9_4.x86_64.rpm
References
No References
CVEs
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-45290
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-28176
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-28180
Fixes
https://bugzilla.redhat.com/show_bug.cgi?id=2268017
https://bugzilla.redhat.com/show_bug.cgi?id=2268820
https://bugzilla.redhat.com/show_bug.cgi?id=2268854