rpm package
almalinux/netavark
pkg:rpm/almalinux/netavark
Vulnerabilities (103)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-4024 | Med | 6.5 | < 2:1.10.3-1.module_el8.10.0+3926+f12484f5 | 2:1.10.3-1.module_el8.10.0+3926+f12484f5 | Dec 23, 2021 | A flaw was found in podman. The `podman machine` function (used to create and manage Podman virtual machine containing a Podman process) spawns a `gvproxy` process on the host system. The `gvproxy` API is accessible on port 7777 on all IP addresses on the host. If that port is op | |
| CVE-2021-33198 | Hig | 7.5 | < 2:1.10.3-1.module_el8.10.0+3926+f12484f5 | 2:1.10.3-1.module_el8.10.0+3926+f12484f5 | Aug 2, 2021 | In Go before 1.15.13 and 1.16.x before 1.16.5, there can be a panic for a large exponent to the math/big.Rat SetString or UnmarshalText method. | |
| CVE-2019-19921 | Hig | 7.0 | < 2:1.0.1-38.module_el8.9.0+3627+db8ec155 | 2:1.0.1-38.module_el8.9.0+3627+db8ec155 | Feb 12, 2020 | runc through 1.0.0-rc9 has Incorrect Access Control leading to Escalation of Privileges, related to libcontainer/rootfs_linux.go. To exploit this, an attacker must be able to spawn two containers with custom volume-mount configurations, and be able to run custom images. (This vul |
- affected < 2:1.10.3-1.module_el8.10.0+3926+f12484f5fixed 2:1.10.3-1.module_el8.10.0+3926+f12484f5
A flaw was found in podman. The `podman machine` function (used to create and manage Podman virtual machine containing a Podman process) spawns a `gvproxy` process on the host system. The `gvproxy` API is accessible on port 7777 on all IP addresses on the host. If that port is op
- affected < 2:1.10.3-1.module_el8.10.0+3926+f12484f5fixed 2:1.10.3-1.module_el8.10.0+3926+f12484f5
In Go before 1.15.13 and 1.16.x before 1.16.5, there can be a panic for a large exponent to the math/big.Rat SetString or UnmarshalText method.
- affected < 2:1.0.1-38.module_el8.9.0+3627+db8ec155fixed 2:1.0.1-38.module_el8.9.0+3627+db8ec155
runc through 1.0.0-rc9 has Incorrect Access Control leading to Escalation of Privileges, related to libcontainer/rootfs_linux.go. To exploit this, an attacker must be able to spawn two containers with custom volume-mount configurations, and be able to run custom images. (This vul
Page 6 of 6