RHSA-2020:1449: Low: OpenShift Container Platform 4.1.41 security update
Red Hat OpenShift Container Platform is Red Hat's cloud computingKubernetes application platform solution designed for on-premise or privatecloud deployments.Security Fix(es): buildah: a crafted input tar file could overwrite local files during the image build process (CVE-2020-10696) For more details about the security issue(s), including the impact, a CVSSscore, acknowledgments, and other related information, refer to the CVEpage(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2020:1449?
The severity of RHSA-2020:1449 is classified as low.
How do I fix RHSA-2020:1449?
To fix RHSA-2020:1449, update to the remedied version 1.0.2-4.dev.git96ccc2e.rhaos4.1.el8 of the affected packages.
What vulnerabilities does RHSA-2020:1449 address?
RHSA-2020:1449 addresses a vulnerability in buildah that allows a crafted input tar file to overwrite local files during image builds.
Which software packages are affected by RHSA-2020:1449?
RHSA-2020:1449 affects the podman and podman-docker packages.
When was RHSA-2020:1449 released?
RHSA-2020:1449 was released on April 28, 2020.