RHSA-2023:6474
Critical
Red Hat Security Advisory: podman security, bug fix, and enhancement update
Exploit probability
Not scored
Published
October 2, 2024
Required by
Not available
Last source change
August 20, 2026
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
RHSA-2023:6474
View original source
Red Hat Security Advisory: podman security, bug fix, and enhancement update
05 / REFERENCES
Further evidence
- https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/9.3_release_notes/index
- https://access.redhat.com/errata/RHSA-2023:6474
- https://access.redhat.com/security/cve/CVE-2022-41723
- https://access.redhat.com/security/cve/CVE-2022-41724
- https://access.redhat.com/security/cve/CVE-2022-41725
- https://access.redhat.com/security/cve/CVE-2023-24534
- https://access.redhat.com/security/cve/CVE-2023-24536
- https://access.redhat.com/security/cve/CVE-2023-24537
- https://access.redhat.com/security/cve/CVE-2023-24538
- https://access.redhat.com/security/cve/CVE-2023-24539
- https://access.redhat.com/security/cve/CVE-2023-24540
- https://access.redhat.com/security/cve/CVE-2023-25173
- https://access.redhat.com/security/cve/CVE-2023-29400
- https://access.redhat.com/security/cve/CVE-2023-29406
- https://access.redhat.com/security/cve/CVE-2023-3978
- https://access.redhat.com/security/updates/classification/#moderate
- https://bugzilla.redhat.com/show_bug.cgi?id=2173089
- https://bugzilla.redhat.com/show_bug.cgi?id=2174485
- https://bugzilla.redhat.com/show_bug.cgi?id=2177611
- https://bugzilla.redhat.com/show_bug.cgi?id=2178358
- https://bugzilla.redhat.com/show_bug.cgi?id=2178488
- https://bugzilla.redhat.com/show_bug.cgi?id=2178492
- https://bugzilla.redhat.com/show_bug.cgi?id=2180108
- https://bugzilla.redhat.com/show_bug.cgi?id=2182485
- https://bugzilla.redhat.com/show_bug.cgi?id=2182896
- https://bugzilla.redhat.com/show_bug.cgi?id=2183597
- https://bugzilla.redhat.com/show_bug.cgi?id=2183975
- https://bugzilla.redhat.com/show_bug.cgi?id=2184481
- https://bugzilla.redhat.com/show_bug.cgi?id=2184482
- https://bugzilla.redhat.com/show_bug.cgi?id=2184483
- https://bugzilla.redhat.com/show_bug.cgi?id=2184484
- https://bugzilla.redhat.com/show_bug.cgi?id=2187187
- https://bugzilla.redhat.com/show_bug.cgi?id=2188340
- https://bugzilla.redhat.com/show_bug.cgi?id=2196026
- https://bugzilla.redhat.com/show_bug.cgi?id=2196027
- https://bugzilla.redhat.com/show_bug.cgi?id=2196029
- https://bugzilla.redhat.com/show_bug.cgi?id=2222167
- https://bugzilla.redhat.com/show_bug.cgi?id=2223350
- https://bugzilla.redhat.com/show_bug.cgi?id=2228689
- https://bugzilla.redhat.com/show_bug.cgi?id=2229644
- https://bugzilla.redhat.com/show_bug.cgi?id=2230212
- https://bugzilla.redhat.com/show_bug.cgi?id=2231975
- https://bugzilla.redhat.com/show_bug.cgi?id=2232308
- https://bugzilla.redhat.com/show_bug.cgi?id=2233222
- https://github.com/advisories/GHSA-vvpx-j8f3-3w6h
- https://github.com/containerd/containerd/commit/133f6bb6cd827ce35a5fb279c1ead12b9d21460a
- https://github.com/containerd/containerd/releases/tag/v1.5.18
- https://github.com/containerd/containerd/releases/tag/v1.6.18
- https://github.com/containerd/containerd/security/advisories/GHSA-hmfx-3pcx-653p
- https://github.com/golang/go/issues/59180
- https://github.com/golang/go/issues/59234
- https://github.com/golang/go/issues/59720
- https://go.dev/cl/468124
- https://go.dev/cl/468125
- https://go.dev/cl/468135
- https://go.dev/cl/468295
- https://go.dev/cl/514896
- https://go.dev/issue/57855
- https://go.dev/issue/58001
- https://go.dev/issue/58006
- https://go.dev/issue/58975
- https://go.dev/issue/59153
- https://go.dev/issue/59721
- https://go.dev/issue/59722
- https://go.dev/issue/61615
- https://groups.google.com/g/golang-announce/c/2q13H6LEEx0
- https://groups.google.com/g/golang-announce/c/MEb0UyuSMsU
- https://groups.google.com/g/golang-announce/c/V0aBFqaFs_E
- https://groups.google.com/g/golang-announce/c/Xdv6JL9ENs8
- https://issues.redhat.com/browse/RHEL-3132
- https://issues.redhat.com/browse/RHEL-3133
- https://nvd.nist.gov/vuln/detail/CVE-2022-41723
- https://nvd.nist.gov/vuln/detail/CVE-2022-41724
- https://nvd.nist.gov/vuln/detail/CVE-2022-41725
- https://nvd.nist.gov/vuln/detail/CVE-2023-24534
- https://nvd.nist.gov/vuln/detail/CVE-2023-24536
- https://nvd.nist.gov/vuln/detail/CVE-2023-24537
- https://nvd.nist.gov/vuln/detail/CVE-2023-24538
- https://nvd.nist.gov/vuln/detail/CVE-2023-24539
- https://nvd.nist.gov/vuln/detail/CVE-2023-24540
- https://nvd.nist.gov/vuln/detail/CVE-2023-25173
- https://nvd.nist.gov/vuln/detail/CVE-2023-29400
- https://nvd.nist.gov/vuln/detail/CVE-2023-29406
- https://nvd.nist.gov/vuln/detail/CVE-2023-3978
- https://pkg.go.dev/vuln/GO-2023-1569
- https://pkg.go.dev/vuln/GO-2023-1570
- https://pkg.go.dev/vuln/GO-2023-1571
- https://pkg.go.dev/vuln/GO-2023-1988
- https://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_6474.json
- https://vuln.go.dev/ID/GO-2023-1571.json
- https://www.benthamsgaze.org/2022/08/22/vulnerability-in-linux-containers-investigation-and-mitigation/
- https://www.cve.org/CVERecord?id=CVE-2022-41723
- https://www.cve.org/CVERecord?id=CVE-2022-41724
- https://www.cve.org/CVERecord?id=CVE-2022-41725
- https://www.cve.org/CVERecord?id=CVE-2023-24534
- https://www.cve.org/CVERecord?id=CVE-2023-24536
- https://www.cve.org/CVERecord?id=CVE-2023-24537
- https://www.cve.org/CVERecord?id=CVE-2023-24538
- https://www.cve.org/CVERecord?id=CVE-2023-24539
- https://www.cve.org/CVERecord?id=CVE-2023-24540
- https://www.cve.org/CVERecord?id=CVE-2023-25173
- https://www.cve.org/CVERecord?id=CVE-2023-29400
- https://www.cve.org/CVERecord?id=CVE-2023-29406
- https://www.cve.org/CVERecord?id=CVE-2023-3978