Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2023.0245
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2023-0245)
Resumen:The remote host is missing an update for the 'docker-containerd, golang-github-mrunalp-fileutils' package(s) announced via the MGASA-2023-0245 advisory.
Descripción:Summary:
The remote host is missing an update for the 'docker-containerd, golang-github-mrunalp-fileutils' package(s) announced via the MGASA-2023-0245 advisory.

Vulnerability Insight:
Memory leak. (CVE-2022-23471)
Denial of service with maliciously crafted image with a large file
(CVE-2023-25153)
Security bypass due to improper supplementary group handling.
(CVE-2023-25173)

Affected Software/OS:
'docker-containerd, golang-github-mrunalp-fileutils' package(s) on Mageia 8.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:L/AC:L/Au:S/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2022-23471
https://security.gentoo.org/glsa/202401-31
https://github.com/containerd/containerd/commit/a05d175400b1145e5e6a735a6710579d181e7fb0
https://github.com/containerd/containerd/security/advisories/GHSA-2qjp-425j-52j9
Common Vulnerability Exposure (CVE) ID: CVE-2023-25153
https://github.com/containerd/containerd/commit/0c314901076a74a7b797a545d2f462285fdbb8c4
https://github.com/containerd/containerd/releases/tag/v1.5.18
https://github.com/containerd/containerd/releases/tag/v1.6.18
https://github.com/containerd/containerd/security/advisories/GHSA-259w-8hf6-59c2
Common Vulnerability Exposure (CVE) ID: CVE-2023-25173
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZTE4ITXXPIWZEQ4HYQCB6N6GZIMWXDAI/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XNF4OLYZRQE75EB5TW5N42FSXHBXGWFE/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LYZOKMMVX4SIEHPJW3SJUQGMO5YZCPHC/
https://github.com/advisories/GHSA-4wjj-jwc9-2x96
https://github.com/advisories/GHSA-fjm8-m7m6-2fjp
https://github.com/advisories/GHSA-phjr-8j92-w5v7
https://github.com/containerd/containerd/commit/133f6bb6cd827ce35a5fb279c1ead12b9d21460a
https://github.com/containerd/containerd/security/advisories/GHSA-hmfx-3pcx-653p
https://github.com/moby/moby/security/advisories/GHSA-rc4r-wh2q-q6c4
https://www.benthamsgaze.org/2022/08/22/vulnerability-in-linux-containers-investigation-and-mitigation/
CopyrightCopyright (C) 2023 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.