Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

A vulnerability was found in `podman build` and `buildah.` This issue occurs in a container breakout by using --jobs=2 and a race condition when building a malicious Containerfile. SELinux might mitigate it, but even with SELinux on, it still allows the enumeration of files and directories on the host.

CVSS 1 Total

ScoreSeverityVersionVector String
8.6HIGH3.1CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Product Status

Learn more

Versions 4 Total

Default Status: unaffected

affected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 1 Total

Default Status: affected

unaffected

Versions 0 Total

Default Status: All versions are affected

References 31 Total

Authorized Data Publishers