← Back

CVE-2022-4123

nvd nist
Published: Dec 8, 2022Modified: Apr 22, 2025

JSON object

Loading...
3.3
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 1.8 / Impact: 1.4
Source: NVD

Description

A flaw was found in Buildah. The local path and the lowest subdirectory may be disclosed due to incorrect absolute path traversal, resulting in an impact to confidentiality.

Affected (13)

Podman
1 product
Fedora
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Podman Project
Version 4.1.0
Version 4.1.0 rc1
Version 4.1.0 rc2
Version 4.1.1
Version 4.2.0
Version 4.2.0 rc1
Version 4.2.0 rc2
Version 4.2.0 rc3
Version 4.2.1
Version 4.3.0
Configuration B
3 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 35
Version 36
Version 37

References (2)

Source: secalert@redhat.com
Issue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingThird Party Advisory

Timeline

No history available yet.