rpm package
almalinux/slirp4netns
pkg:rpm/almalinux/slirp4netns
Vulnerabilities (102)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-1726 | — | < 0.4.2-3.git21fdece.module_el8.5.0+2635+e4386a39 | 0.4.2-3.git21fdece.module_el8.5.0+2635+e4386a39 | Feb 11, 2020 | A flaw was discovered in Podman where it incorrectly allows containers when created to overwrite existing files in volumes, even if they are mounted as read-only. When a user runs a malicious container or a container based on a malicious image with an attached volume that is used | ||
| CVE-2020-8608 | — | < 0.4.2-3.git21fdece.module_el8.5.0+2635+e4386a39 | 0.4.2-3.git21fdece.module_el8.5.0+2635+e4386a39 | Feb 6, 2020 | In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code. |
- CVE-2020-1726Feb 11, 2020affected < 0.4.2-3.git21fdece.module_el8.5.0+2635+e4386a39fixed 0.4.2-3.git21fdece.module_el8.5.0+2635+e4386a39
A flaw was discovered in Podman where it incorrectly allows containers when created to overwrite existing files in volumes, even if they are mounted as read-only. When a user runs a malicious container or a container based on a malicious image with an attached volume that is used
- CVE-2020-8608Feb 6, 2020affected < 0.4.2-3.git21fdece.module_el8.5.0+2635+e4386a39fixed 0.4.2-3.git21fdece.module_el8.5.0+2635+e4386a39
In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code.
Page 6 of 6