Buildah (as part of Podman) vulnerable to Path Traversal
Low severity
GitHub Reviewed
Published
Dec 8, 2022
to the GitHub Advisory Database
•
Updated May 20, 2024
Package
Affected versions
>= 4.1.0-rc1, <= 4.4.1
Patched versions
None
Description
Published by the National Vulnerability Database
Dec 8, 2022
Published to the GitHub Advisory Database
Dec 8, 2022
Reviewed
Dec 8, 2022
Last updated
May 20, 2024
A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path traversal, resulting in an impact to confidentiality.
References