Description
Buildah (as part of Podman) vulnerable to Path Traversal
A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path traversal, resulting in an impact to confidentiality.
Mitigation
Minimal update. May introduce new vulnerabilities or breaking changes.
|
 go | | >=4.1.0 <=4.1.1 || >=4.2.0 <=4.2.1 || =4.3.0 | - |
 go | | | - |
 go | | | 4.4.2 |
 debian 11 | | =1.19.6+dfsg1-1 || =1.20.0+ds1-1 || =1.20.1+ds1-1 || =1.20.1+ds1-2 || =1.21.0+ds1-2 || =1.21.3+ds1-1 || =1.22.3+ds1-1 || =1.22.3+ds1-2 || =1.23.1+ds1-1 || =1.23.1+ds1-2 || =1.23.1+ds1-3 || =1.24.1+ds1-1 || =1.26.1+ds1-1 || =1.27.0+ds1-2 || =1.27.0+ds1-3 || =1.27.0+ds1-4 || =1.27.0+ds1-5 || =1.27.0+ds1-6 || =1.28.0+ds1-1 || =1.28.0+ds1-2 || =1.28.0+ds1-3 || =1.28.2+ds1-1 || =1.28.2+ds1-2 || =1.28.2+ds1-3 || =1.29.0+ds1-1 || =1.30.0+ds1-1 || =1.30.0+ds1-2 || =1.30.0+ds1-3 || =1.31.2+ds1-1 || =1.31.2+ds1-2 || =1.31.2+ds1-3 || =1.32.0+ds1-1 || =1.32.0+ds1-2 || =1.32.2+ds1-1 || =1.33.1+ds1-1 || =1.33.1+ds1-2 || =1.33.3+ds1-1 || =1.33.3+ds1-2 || =1.33.5+ds1-3 || =1.33.5+ds1-4 || =1.33.7+ds1-1 || =1.34.0+ds1-1 || =1.34.0+ds1-2 || =1.35.3+ds1-1 || =1.35.3+ds1-2 || =1.35.3+ds1-3 || =1.37.0+ds1-1 || =1.37.1+ds1-1 || =1.37.1+ds1-2 || =1.37.2+ds1-1 || =1.37.2+ds1-2 || =1.37.2+ds1-3 || =1.37.3+ds1-1 || =1.37.3+ds1-2 || =1.37.3+ds1-3 || =1.37.4+ds1-1 || =1.37.5+ds1-1 || =1.38.0+ds1-1 || =1.38.0+ds1-2 || =1.38.1+ds1-1 || =1.39.0+ds1-1 || =1.39.3+ds1-1 || =1.41.4+ds1-1 || =1.41.4+ds1-2 || =1.41.4+ds1-3 || =1.41.5+ds1-1 || =1.41.5+ds1-2 || =1.41.5+ds1-3 || =1.41.5+ds1-4 || =1.42.1+ds1-1 || =1.42.1+ds1-2 || =1.43.0+ds1-1 || =1.43.0+ds1-2 || =1.43.1+ds1-1 | - |
 debian 12 | | =1.28.2+ds1-3 || =1.28.2+ds1-3+deb12u1 || =1.29.0+ds1-1 || =1.30.0+ds1-1 || =1.30.0+ds1-2 || =1.30.0+ds1-3 || =1.31.2+ds1-1 || =1.31.2+ds1-2 || =1.31.2+ds1-3 || =1.32.0+ds1-1 || =1.32.0+ds1-2 || =1.32.2+ds1-1 || =1.33.1+ds1-1 || =1.33.1+ds1-2 || =1.33.3+ds1-1 || =1.33.3+ds1-2 || =1.33.5+ds1-3 || =1.33.5+ds1-4 || =1.33.7+ds1-1 || =1.34.0+ds1-1 || =1.34.0+ds1-2 || =1.35.3+ds1-1 || =1.35.3+ds1-2 || =1.35.3+ds1-3 || =1.37.0+ds1-1 || =1.37.1+ds1-1 || =1.37.1+ds1-2 || =1.37.2+ds1-1 || =1.37.2+ds1-2 || =1.37.2+ds1-3 || =1.37.3+ds1-1 || =1.37.3+ds1-2 || =1.37.3+ds1-3 || =1.37.4+ds1-1 || =1.37.5+ds1-1 || =1.38.0+ds1-1 || =1.38.0+ds1-2 || =1.38.1+ds1-1 || =1.39.0+ds1-1 || =1.39.3+ds1-1 || =1.41.4+ds1-1 || =1.41.4+ds1-2 || =1.41.4+ds1-3 || =1.41.5+ds1-1 || =1.41.5+ds1-2 || =1.41.5+ds1-3 || =1.41.5+ds1-4 || =1.42.1+ds1-1 || =1.42.1+ds1-2 || =1.43.0+ds1-1 || =1.43.0+ds1-2 || =1.43.1+ds1-1 | - |
 debian 14 | | =1.39.3+ds1-1 || =1.41.4+ds1-1 || =1.41.4+ds1-2 || =1.41.4+ds1-3 || =1.41.5+ds1-1 || =1.41.5+ds1-2 || =1.41.5+ds1-3 || =1.41.5+ds1-4 || =1.42.1+ds1-1 || =1.42.1+ds1-2 || =1.43.0+ds1-1 || =1.43.0+ds1-2 || =1.43.1+ds1-1 | - |
 debian 13 | | =1.39.3+ds1-1 || =1.41.4+ds1-1 || =1.41.4+ds1-2 || =1.41.4+ds1-3 || =1.41.5+ds1-1 || =1.41.5+ds1-2 || =1.41.5+ds1-3 || =1.41.5+ds1-4 || =1.42.1+ds1-1 || =1.42.1+ds1-2 || =1.43.0+ds1-1 || =1.43.0+ds1-2 || =1.43.1+ds1-1 | - |
 rpm rhel9 | | - | - |
 rpm rhel7 | | - | - |
 rpm rhel8 | | - | - |