RHSA-2021:4154MediumCVSS 6.5
Red Hat Security Advisory: container-tools:rhel8 security, bug fix, and enhancement update
🔗 CVE IDs covered (2)
📋 Description
CVE-2021-3602 — buildah: Host environment variables leaked in build container when using chroot isolation CVE-2021-20291 — containers/storage: DoS via malicious image
🎯 Affected products200
- Red Hat Enterprise Linux AppStream (v. 8)
- buildah-0:1.22.3-2.module+el8.5.0+12582+56d94c81.aarch64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-0:1.22.3-2.module+el8.5.0+12582+56d94c81.ppc64le (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-0:1.22.3-2.module+el8.5.0+12582+56d94c81.s390x (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-0:1.22.3-2.module+el8.5.0+12582+56d94c81.src (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-0:1.22.3-2.module+el8.5.0+12582+56d94c81.x86_64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-debuginfo-0:1.22.3-2.module+el8.5.0+12582+56d94c81.aarch64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-debuginfo-0:1.22.3-2.module+el8.5.0+12582+56d94c81.ppc64le (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-debuginfo-0:1.22.3-2.module+el8.5.0+12582+56d94c81.s390x (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-debuginfo-0:1.22.3-2.module+el8.5.0+12582+56d94c81.x86_64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-debugsource-0:1.22.3-2.module+el8.5.0+12582+56d94c81.aarch64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-debugsource-0:1.22.3-2.module+el8.5.0+12582+56d94c81.ppc64le (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-debugsource-0:1.22.3-2.module+el8.5.0+12582+56d94c81.s390x (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-debugsource-0:1.22.3-2.module+el8.5.0+12582+56d94c81.x86_64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-tests-0:1.22.3-2.module+el8.5.0+12582+56d94c81.aarch64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-tests-0:1.22.3-2.module+el8.5.0+12582+56d94c81.ppc64le (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-tests-0:1.22.3-2.module+el8.5.0+12582+56d94c81.s390x (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-tests-0:1.22.3-2.module+el8.5.0+12582+56d94c81.x86_64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-tests-debuginfo-0:1.22.3-2.module+el8.5.0+12582+56d94c81.aarch64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-tests-debuginfo-0:1.22.3-2.module+el8.5.0+12582+56d94c81.ppc64le (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-tests-debuginfo-0:1.22.3-2.module+el8.5.0+12582+56d94c81.s390x (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- buildah-tests-debuginfo-0:1.22.3-2.module+el8.5.0+12582+56d94c81.x86_64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- cockpit-podman-0:33-1.module+el8.5.0+12582+56d94c81.noarch (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- cockpit-podman-0:33-1.module+el8.5.0+12582+56d94c81.src (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- conmon-2:2.0.29-1.module+el8.5.0+12582+56d94c81.aarch64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- conmon-2:2.0.29-1.module+el8.5.0+12582+56d94c81.ppc64le (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- conmon-2:2.0.29-1.module+el8.5.0+12582+56d94c81.s390x (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- conmon-2:2.0.29-1.module+el8.5.0+12582+56d94c81.src (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- conmon-2:2.0.29-1.module+el8.5.0+12582+56d94c81.x86_64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- conmon-debuginfo-2:2.0.29-1.module+el8.5.0+12582+56d94c81.aarch64 (container-tools:rhel8) as a component of Red Hat Enterprise Linux AppStream (v. 8)
- +170 more not shown
✅ Remediation
For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258
🔗 References (58)
- selfhttps://access.redhat.com/errata/RHSA-2021:4154
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.5_release_notes/
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1914687
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1928935
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1932399
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1933775
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1933776
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1934415
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1934480
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1937641
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1937830
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1939485
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1940037
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1940054
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1940082
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1940493
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1941380
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1947432
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1947999
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1952204
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1952698
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1957299
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1957840
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1957904
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1958353
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1960948
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1966538
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1966872
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1969264
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1972150
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1972209
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1972211
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1972282
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1972648
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1973418
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1976283
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1977280
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1977673
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1978415
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1978556
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1978647
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1979497
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1980212
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1982593
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1982762
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1985499
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1985905
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1987049
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1993209
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1993249
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1995041
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1998191
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1999144
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2000943
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2004562
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2005018
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2021/rhsa-2021_4154.json