VYPR

Go modules package

github.com/containers/storage

pkg:golang/github.com/containers/storage

Vulnerabilities (1)

  • CVE-2021-20291Apr 1, 2021
    affected < 1.28.1fixed 1.28.1

    A deadlock vulnerability was found in 'github.com/containers/storage' in versions before 1.28.1. When a container image is processed, each layer is unpacked using `tar`. If one of those layers is not a valid `tar` archive this causes an error leading to an unexpected situation wh