[CLSA-2025:1756932191] buildah: Fix of CVE-2024-9407
Type:
security
Severity:
Moderate
Release date:
2025-09-03 20:43:15 UTC
Description:
- CVE-2024-9407: validate input for bind-propagation option in Dockerfile RUN --mount instruction to prevent arbitrary parameter passing and potential file modification
Updated packages:
  • buildah-1.35.4-1.el9_2.tuxcare.els3.x86_64.rpm
    sha:50bd2c38f4631a0bc993dedf4bd08ed91807565ebce6c83a23ef9b545ed2e54f
  • buildah-tests-1.35.4-1.el9_2.tuxcare.els3.x86_64.rpm
    sha:a34e806664448b237dcea7a3cdff903124d15c31d90ec2b9c38d9a355927a327
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.