libpod Project libpod 1.4.3

CPE Details

libpod Project libpod 1.4.3
1.4.3
2019-08-01
09h34 +00:00
2019-08-01
09h34 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:libpod_project:libpod:1.4.3:*:*:*:*:*:*:*

Informations

Vendor

libpod_project

Product

libpod

Version

1.4.3

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-18466 2019-10-28 11h37 +00:00 An issue was discovered in Podman in libpod before 1.6.0. It resolves a symlink in the host context during a copy operation from the container to the host, because an undesired glob operation occurs. An attacker could create a container image containing particular symlinks that, when copied by a victim user to the host filesystem, may overwrite existing files with others from the host.
5.5
Medium