6.5

CVE-2024-9676

Podman: buildah: cri-o: symlink traversal vulnerability in the containers/storage library can cause denial of service (dos)

A vulnerability was found in Podman, Buildah, and CRI-O. A symlink traversal vulnerability in the containers/storage library can cause Podman, Buildah, and CRI-O to hang and result in a denial of service via OOM kill when running a malicious image using an automatically assigned user namespace (`--userns=auto` in Podman and Buildah). The containers/storage library will read /etc/passwd inside the container, but does not properly validate if that file is a symlink, which can be used to cause the library to read an arbitrary file on the host.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Redhat ≫ Enterprise Linux Version 9.0
Redhat ≫ Enterprise Linux Eus Version 9.4
Redhat ≫ Enterprise Linux For Arm 64 Version 9.0_aarch64
Redhat ≫ Enterprise Linux For Arm 64 Eus Version 9.4_aarch64
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.34% 0.682
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
RedHat 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

https://access.redhat.com/errata/RHSA-2024:8428
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:8690
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:8694
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:9454
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:9459
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:9051
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:9926
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:8686
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:8700
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:8984
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:10289
https://access.redhat.com/errata/RHSA-2024:8418
Vendor Advisory
https://access.redhat.com/errata/RHSA-2024:8437
Vendor Advisory
https://access.redhat.com/errata/RHSA-2025:0876
https://access.redhat.com/security/cve/CVE-2024-9676
Vendor Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2317467
Issue Tracking
https://github.com/advisories/GHSA-wq2p-5pc6-wpgf
Third Party Advisory
https://access.redhat.com/errata/RHSA-2025:2454
https://access.redhat.com/errata/RHSA-2025:2710
https://access.redhat.com/errata/RHSA-2025:3301
https://github.com/containers/storage/commit/935c58f4b3e364a9c9d33ed06476a831e6ad5679