RHSA-2024:2548MediumCVSS 8.6
Red Hat Security Advisory: podman security and bug fix update
🔗 CVE IDs covered (2)
📋 Description
CVE-2024-1753 — buildah: full container escape at build time CVE-2024-24786 — golang-protobuf: encoding/protojson, internal/encoding/json: infinite loop in protojson.Unmarshal when unmarshaling certain forms of invalid JSON
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2024:2548
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://access.redhat.com/security/updates/classification#important
- externalhttps://issues.redhat.com/browse/RHEL-14922
- externalhttps://issues.redhat.com/browse/RHEL-28629
- externalhttps://issues.redhat.com/browse/RHEL-28636
- externalhttps://issues.redhat.com/browse/RHEL-30886
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_2548.json