#1708 [podman] CVE-2024-9676 podman: symlink traversal vulnerability in the containers/storage library can cause Denial of Service (DoS) [fedora-all] | rhbz#2319019
Closed by blockerbot. Opened by blockerbot.

Bug details: ** https://bugzilla.redhat.com/show_bug.cgi?id=2319019 **
Information from BlockerBugs App:
2319019

Current vote summary

The votes have been last counted at 2024-10-18 17:59 UTC and the last processed comment was #comment-939243

To learn how to vote, see:
https://pagure.io/fedora-qa/blocker-review
A quick example: BetaBlocker +1 (where the tracker name is one of BetaBlocker/FinalBlocker/BetaFE/FinalFE/0Day/PreviousRelease and the vote is one of +1/0/-1)


FinalBlocker +1

We ship this in a number of artifacts by default.

The criterion is: "The release must contain no known security bugs of 'important' or higher impact according to the Red Hat severity classification scale which cannot be satisfactorily resolved by a package update (e.g. issues during installation)."

https://access.redhat.com/security/cve/CVE-2024-9676 has this one as Moderate, so for me:

FinalBlocker -1

But:

FinalFE +1

Taking Peter's and Geraldo's votes as implicit +1 for FE, let's say this is:

AGREED AcceptedFinalFreezeException

The following votes have been closed:

  • Accepted FinalFreezeException (+1, 0, -0)

FinalBlocker -1
FinalFE +1

Moderate Impact

FinalBlocker -1
FinalFE +1

Metadata Update from @blockerbot:
- Issue status updated to: Closed (was: Open)

Release F41 is no longer tracked by BlockerBugs, closing this ticket.

Log in to comment on this ticket.

Metadata