RHSA-2023:6938
Critical
Red Hat Security Advisory: container-tools:4.0 security and bug fix update
Exploit probability
Not scored
Published
October 21, 2024
Required by
Not available
Last source change
August 20, 2026
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
RHSA-2023:6938
View original source
Red Hat Security Advisory: container-tools:4.0 security and bug fix update
05 / REFERENCES
Further evidence
- https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.9_release_notes/index
- https://access.redhat.com/errata/RHSA-2023:6938
- https://access.redhat.com/security/cve/CVE-2022-3064
- https://access.redhat.com/security/cve/CVE-2022-41723
- https://access.redhat.com/security/cve/CVE-2022-41724
- https://access.redhat.com/security/cve/CVE-2022-41725
- https://access.redhat.com/security/cve/CVE-2023-24534
- https://access.redhat.com/security/cve/CVE-2023-24536
- https://access.redhat.com/security/cve/CVE-2023-24537
- https://access.redhat.com/security/cve/CVE-2023-24538
- https://access.redhat.com/security/cve/CVE-2023-24539
- https://access.redhat.com/security/cve/CVE-2023-24540
- https://access.redhat.com/security/cve/CVE-2023-25809
- https://access.redhat.com/security/cve/CVE-2023-27561
- https://access.redhat.com/security/cve/CVE-2023-28642
- https://access.redhat.com/security/cve/CVE-2023-29400
- https://access.redhat.com/security/cve/CVE-2023-29406
- https://access.redhat.com/security/cve/CVE-2023-3978
- https://access.redhat.com/security/updates/classification/#moderate
- https://bugzilla.redhat.com/show_bug.cgi?id=2163037
- https://bugzilla.redhat.com/show_bug.cgi?id=2165743
- https://bugzilla.redhat.com/show_bug.cgi?id=2175721
- https://bugzilla.redhat.com/show_bug.cgi?id=2178358
- https://bugzilla.redhat.com/show_bug.cgi?id=2178488
- https://bugzilla.redhat.com/show_bug.cgi?id=2178492
- https://bugzilla.redhat.com/show_bug.cgi?id=2182883
- https://bugzilla.redhat.com/show_bug.cgi?id=2182884
- https://bugzilla.redhat.com/show_bug.cgi?id=2184481
- https://bugzilla.redhat.com/show_bug.cgi?id=2184482
- https://bugzilla.redhat.com/show_bug.cgi?id=2184483
- https://bugzilla.redhat.com/show_bug.cgi?id=2184484
- https://bugzilla.redhat.com/show_bug.cgi?id=2196026
- https://bugzilla.redhat.com/show_bug.cgi?id=2196027
- https://bugzilla.redhat.com/show_bug.cgi?id=2196029
- https://bugzilla.redhat.com/show_bug.cgi?id=2222167
- https://bugzilla.redhat.com/show_bug.cgi?id=2228689
- https://bugzilla.redhat.com/show_bug.cgi?id=2231464
- https://gist.github.com/LiveOverflow/c937820b688922eb127fb760ce06dab9
- https://github.com/advisories/GHSA-6q6q-88xp-6f2r
- https://github.com/advisories/GHSA-g2j6-57v7-gm8c
- https://github.com/advisories/GHSA-vvpx-j8f3-3w6h
- https://github.com/go-yaml/yaml/commit/f221b8435cfb71e54062f6c6e99e9ade30b124d5
- https://github.com/go-yaml/yaml/releases/tag/v2.2.4
- https://github.com/golang/go/issues/59180
- https://github.com/golang/go/issues/59234
- https://github.com/golang/go/issues/59720
- https://github.com/opencontainers/runc/commit/0d62b950e60f6980b54fe3bafd9a9c608dc1df17
- https://github.com/opencontainers/runc/issues/2197#issuecomment-1437617334
- https://github.com/opencontainers/runc/issues/3751
- https://github.com/opencontainers/runc/security/advisories/GHSA-m8cg-xc2p-r3fc
- https://go.dev/cl/468124
- https://go.dev/cl/468125
- https://go.dev/cl/468135
- https://go.dev/cl/468295
- https://go.dev/cl/514896
- https://go.dev/issue/57855
- https://go.dev/issue/58001
- https://go.dev/issue/58006
- https://go.dev/issue/58975
- https://go.dev/issue/59153
- https://go.dev/issue/59721
- https://go.dev/issue/59722
- https://go.dev/issue/61615
- https://groups.google.com/g/golang-announce/c/2q13H6LEEx0
- https://groups.google.com/g/golang-announce/c/MEb0UyuSMsU
- https://groups.google.com/g/golang-announce/c/V0aBFqaFs_E
- https://groups.google.com/g/golang-announce/c/Xdv6JL9ENs8
- https://nvd.nist.gov/vuln/detail/CVE-2022-3064
- https://nvd.nist.gov/vuln/detail/CVE-2022-41723
- https://nvd.nist.gov/vuln/detail/CVE-2022-41724
- https://nvd.nist.gov/vuln/detail/CVE-2022-41725
- https://nvd.nist.gov/vuln/detail/CVE-2023-24534
- https://nvd.nist.gov/vuln/detail/CVE-2023-24536
- https://nvd.nist.gov/vuln/detail/CVE-2023-24537
- https://nvd.nist.gov/vuln/detail/CVE-2023-24538
- https://nvd.nist.gov/vuln/detail/CVE-2023-24539
- https://nvd.nist.gov/vuln/detail/CVE-2023-24540
- https://nvd.nist.gov/vuln/detail/CVE-2023-25809
- https://nvd.nist.gov/vuln/detail/CVE-2023-27561
- https://nvd.nist.gov/vuln/detail/CVE-2023-28642
- https://nvd.nist.gov/vuln/detail/CVE-2023-29400
- https://nvd.nist.gov/vuln/detail/CVE-2023-29406
- https://nvd.nist.gov/vuln/detail/CVE-2023-3978
- https://pkg.go.dev/vuln/GO-2022-0956
- https://pkg.go.dev/vuln/GO-2023-1569
- https://pkg.go.dev/vuln/GO-2023-1570
- https://pkg.go.dev/vuln/GO-2023-1571
- https://pkg.go.dev/vuln/GO-2023-1988
- https://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_6938.json
- https://vuln.go.dev/ID/GO-2023-1571.json
- https://www.cve.org/CVERecord?id=CVE-2022-3064
- https://www.cve.org/CVERecord?id=CVE-2022-41723
- https://www.cve.org/CVERecord?id=CVE-2022-41724
- https://www.cve.org/CVERecord?id=CVE-2022-41725
- https://www.cve.org/CVERecord?id=CVE-2023-24534
- https://www.cve.org/CVERecord?id=CVE-2023-24536
- https://www.cve.org/CVERecord?id=CVE-2023-24537
- https://www.cve.org/CVERecord?id=CVE-2023-24538
- https://www.cve.org/CVERecord?id=CVE-2023-24539
- https://www.cve.org/CVERecord?id=CVE-2023-24540
- https://www.cve.org/CVERecord?id=CVE-2023-25809
- https://www.cve.org/CVERecord?id=CVE-2023-27561
- https://www.cve.org/CVERecord?id=CVE-2023-28642
- https://www.cve.org/CVERecord?id=CVE-2023-29400
- https://www.cve.org/CVERecord?id=CVE-2023-29406
- https://www.cve.org/CVERecord?id=CVE-2023-3978