RHSA-2024:0670: Important: runc security update
Important: runc security update
Other sources
The runC tool is a lightweight, portable implementation of the Open Container Format (OCF) that provides container runtime.Security Fix(es): runc: file descriptor leak (CVE-2024-21626) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:0670?
The severity of RHSA-2024:0670 is classified as important.
What vulnerability is addressed in RHSA-2024:0670?
RHSA-2024:0670 addresses a file descriptor leak vulnerability identified as CVE-2024-21626.
How do I fix RHSA-2024:0670?
To fix RHSA-2024:0670, update the runc package to version 1.1.12-1.el9_3.
Which versions of Red Hat are affected by RHSA-2024:0670?
RHSA-2024:0670 affects Red Hat Enterprise Linux for x86_64, IBM z Systems, ARM 64, and Power, little endian.
What is runC in relation to RHSA-2024:0670?
runC is a lightweight, portable implementation of the Open Container Format (OCF) used as a container runtime that is affected by RHSA-2024:0670.