Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.10.2023.0245
Category:Mageia Linux Local Security Checks
Title:Mageia: Security Advisory (MGASA-2023-0245)
Summary:The remote host is missing an update for the 'docker-containerd, golang-github-mrunalp-fileutils' package(s) announced via the MGASA-2023-0245 advisory.
Description:Summary:
The remote host is missing an update for the 'docker-containerd, golang-github-mrunalp-fileutils' package(s) announced via the MGASA-2023-0245 advisory.

Vulnerability Insight:
Memory leak. (CVE-2022-23471)
Denial of service with maliciously crafted image with a large file
(CVE-2023-25153)
Security bypass due to improper supplementary group handling.
(CVE-2023-25173)

Affected Software/OS:
'docker-containerd, golang-github-mrunalp-fileutils' package(s) on Mageia 8.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:L/AC:L/Au:S/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2022-23471
https://security.gentoo.org/glsa/202401-31
https://github.com/containerd/containerd/commit/a05d175400b1145e5e6a735a6710579d181e7fb0
https://github.com/containerd/containerd/security/advisories/GHSA-2qjp-425j-52j9
Common Vulnerability Exposure (CVE) ID: CVE-2023-25153
https://github.com/containerd/containerd/commit/0c314901076a74a7b797a545d2f462285fdbb8c4
https://github.com/containerd/containerd/releases/tag/v1.5.18
https://github.com/containerd/containerd/releases/tag/v1.6.18
https://github.com/containerd/containerd/security/advisories/GHSA-259w-8hf6-59c2
Common Vulnerability Exposure (CVE) ID: CVE-2023-25173
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/ZTE4ITXXPIWZEQ4HYQCB6N6GZIMWXDAI/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XNF4OLYZRQE75EB5TW5N42FSXHBXGWFE/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LYZOKMMVX4SIEHPJW3SJUQGMO5YZCPHC/
https://github.com/advisories/GHSA-4wjj-jwc9-2x96
https://github.com/advisories/GHSA-fjm8-m7m6-2fjp
https://github.com/advisories/GHSA-phjr-8j92-w5v7
https://github.com/containerd/containerd/commit/133f6bb6cd827ce35a5fb279c1ead12b9d21460a
https://github.com/containerd/containerd/security/advisories/GHSA-hmfx-3pcx-653p
https://github.com/moby/moby/security/advisories/GHSA-rc4r-wh2q-q6c4
https://www.benthamsgaze.org/2022/08/22/vulnerability-in-linux-containers-investigation-and-mitigation/
CopyrightCopyright (C) 2023 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.