[pkg-go] Bug#1019591: libpod: CVE-2022-2989

Antoine Beaupré anarcat at debian.org
Tue Oct 25 20:41:12 BST 2022


fixed 101959 4.2.0+ds1-1
thanks

> Please adjust the affected versions in the BTS as needed.

I *believe* the fix for this is:

https://github.com/containers/podman/pull/15696
https://github.com/containers/podman/commit/21540161f20daffd884eba99b2cc31373c9a0ec4

at least that's what

https://bugzilla.redhat.com/show_bug.cgi?id=2121445

... links to now.

So I *think* this is fixed in 4.2.0+ds1-1 and later, currently in
experimental. But there's a bunch of confidential tickets on the redhat
side of things, so it's not clear to me if the fix is complete or what.

a.
-- 
Power is always dangerous.
Power attracts the worst and corrupts the best.
                        - Edward Abbey



More information about the Pkg-go-maintainers mailing list