Vulnerability Database
Blog
FAQ
Docs
RHSA-2024:9097
See a problem?
Please try reporting it
to the source
first.
Source
https://access.redhat.com/errata/RHSA-2024:9097
Import Source
https://security.access.redhat.com/data/osv/RHSA-2024:9097.json
JSON Data
https://api.osv.dev/v1/vulns/RHSA-2024:9097
Related
CVE-2024-24791
CVE-2024-3727
Published
2024-11-15T20:27:53Z
Modified
2024-12-18T10:10:19Z
Severity
8.3 (High)
CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:H
CVSS Calculator
Summary
Red Hat Security Advisory: buildah security update
Details
References
https://access.redhat.com/errata/RHSA-2024:9097
https://docs.redhat.com/en/documentation/red_hat_enterprise_linux/9/html/9.5_release_notes/index
https://access.redhat.com/security/updates/classification/#moderate
https://bugzilla.redhat.com/show_bug.cgi?id=2274767
https://bugzilla.redhat.com/show_bug.cgi?id=2295310
https://issues.redhat.com/browse/RHEL-29278
https://issues.redhat.com/browse/RHEL-40808
https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhsa-2024_9097.json
https://access.redhat.com/security/cve/CVE-2024-3727
https://www.cve.org/CVERecord?id=CVE-2024-3727
https://nvd.nist.gov/vuln/detail/CVE-2024-3727
https://access.redhat.com/security/cve/CVE-2024-24791
https://www.cve.org/CVERecord?id=CVE-2024-24791
https://nvd.nist.gov/vuln/detail/CVE-2024-24791
https://go.dev/cl/591255
https://go.dev/issue/67555
https://groups.google.com/g/golang-dev/c/t0rK-qHBqzY/m/6MMoAZkMAgAJ
Affected packages
Red Hat:enterprise_linux:9::appstream
/
buildah
Package
Name
buildah
Purl
pkg:rpm/redhat/buildah
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:1.37.2-1.el9
Red Hat:enterprise_linux:9::appstream
/
buildah-debuginfo
Package
Name
buildah-debuginfo
Purl
pkg:rpm/redhat/buildah-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:1.37.2-1.el9
Red Hat:enterprise_linux:9::appstream
/
buildah-debugsource
Package
Name
buildah-debugsource
Purl
pkg:rpm/redhat/buildah-debugsource
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:1.37.2-1.el9
Red Hat:enterprise_linux:9::appstream
/
buildah-tests
Package
Name
buildah-tests
Purl
pkg:rpm/redhat/buildah-tests
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:1.37.2-1.el9
Red Hat:enterprise_linux:9::appstream
/
buildah-tests-debuginfo
Package
Name
buildah-tests-debuginfo
Purl
pkg:rpm/redhat/buildah-tests-debuginfo
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
2:1.37.2-1.el9
RHSA-2024:9097 - OSV