podman-docker vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the podman-docker package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • H
Directory Traversal

<3:4.4.1-32.rhaos4.15.el8
  • H
Directory Traversal

<5:5.2.2-1.rhaos4.17.el8
  • H
Directory Traversal

<5:5.2.2-1.rhaos4.17.el8
  • H
Directory Traversal

<3:4.4.1-21.rhaos4.14.el8
  • H
Directory Traversal

<3:4.4.1-21.rhaos4.14.el8
  • H
Improperly Controlled Sequential Memory Allocation

<3:4.4.1-21.rhaos4.14.el8
  • H
Uncontrolled Recursion

<3:4.4.1-21.rhaos4.14.el8
  • H
Uncontrolled Recursion

<3:4.4.1-21.rhaos4.14.el8
  • H
Link Following

<3:4.4.1-8.rhaos4.12.el8
  • H
Information Exposure

<3:4.4.1-8.rhaos4.12.el8
  • H
Directory Traversal

<3:4.4.1-15.rhaos4.13.el8
  • H
Directory Traversal

<3:4.4.1-15.rhaos4.13.el8
  • H
Link Following

<3:4.4.1-15.rhaos4.13.el8
  • H
Improperly Controlled Sequential Memory Allocation

<3:4.4.1-15.rhaos4.13.el8
  • H
Uncontrolled Recursion

<3:4.4.1-15.rhaos4.13.el8
  • H
Uncontrolled Recursion

<3:4.4.1-15.rhaos4.13.el8
  • H
Directory Traversal

<3:4.4.1-8.rhaos4.12.el8
  • H
Link Following

<3:4.4.1-8.rhaos4.12.el8
  • H
Information Exposure

<3:4.4.1-8.rhaos4.12.el8
  • H
Improperly Controlled Sequential Memory Allocation

<3:4.4.1-8.rhaos4.12.el8
  • H
Uncontrolled Recursion

<3:4.4.1-8.rhaos4.12.el8
  • H
Uncontrolled Recursion

<3:4.4.1-8.rhaos4.12.el8
  • H
Directory Traversal

<4:4.9.4-12.rhaos4.16.el8
  • H
Directory Traversal

<4:4.9.4-12.rhaos4.16.el8
  • H
Directory Traversal

<3:4.4.1-31.rhaos4.15.el8
  • H
Link Following

<3:4.4.1-31.rhaos4.15.el8
  • H
Improperly Controlled Sequential Memory Allocation

<3:4.4.1-31.rhaos4.15.el8
  • H
Uncontrolled Recursion

<3:4.4.1-31.rhaos4.15.el8
  • H
Uncontrolled Recursion

<3:4.4.1-31.rhaos4.15.el8
  • H
Link Following

<4:4.9.4-10.rhaos4.16.el8
  • H
Improperly Controlled Sequential Memory Allocation

<4:4.9.4-10.rhaos4.16.el8
  • H
Uncontrolled Recursion

<4:4.9.4-10.rhaos4.16.el8
  • H
Uncontrolled Recursion

<4:4.9.4-10.rhaos4.16.el8
  • H
Directory Traversal

<3:4.4.1-8.rhaos4.12.el8
  • H
Improperly Controlled Sequential Memory Allocation

<3:4.4.1-8.rhaos4.12.el8
  • H
Uncontrolled Recursion

<3:4.4.1-8.rhaos4.12.el8
  • H
Uncontrolled Recursion

<3:4.4.1-8.rhaos4.12.el8
  • H
Resource Exhaustion

<4:5.2.3-2.rhaos4.17.el8
  • H
Improperly Controlled Sequential Memory Allocation

<4:5.2.3-2.rhaos4.17.el8
  • H
Uncontrolled Recursion

<4:5.2.3-2.rhaos4.17.el8
  • H
Uncontrolled Recursion

<4:5.2.3-2.rhaos4.17.el8
  • H
Information Exposure

<3:4.4.1-13.rhaos4.13.el8
  • H
Open Redirect

<3:4.4.1-13.rhaos4.13.el8
  • H
Improper Validation of Integrity Check Value

<3:4.4.1-13.rhaos4.13.el8
  • M
Open Redirect

<3:4.4.1-19.rhaos4.14.el8
  • M
Improper Validation of Integrity Check Value

<3:4.4.1-19.rhaos4.14.el8
  • M
Open Redirect

<3:4.4.1-30.rhaos4.15.el8
  • M
Improper Validation of Integrity Check Value

<3:4.4.1-30.rhaos4.15.el8
  • M
Improper Input Validation

<4:5.2.0-3.rhaos4.17.el8
  • M
Use of Uninitialized Variable

*
  • M
Information Exposure Through Log Files

<4:5.2.0-3.rhaos4.17.el8
  • M
Improper Input Validation

<4:5.2.0-3.rhaos4.17.el8
  • H
Resource Exhaustion

<3:4.4.1-10.1.rhaos4.14.el8
  • M
Authentication Bypass

<3:4.4.1-26.2.rhaos4.15.el8
  • M
Information Exposure Through Log Files

<3:4.4.1-12.rhaos4.13.el8
  • M
Misinterpretation of Input

<3:4.4.1-12.rhaos4.13.el8
  • M
Improper Input Validation

<3:4.4.1-12.rhaos4.13.el8
  • M
Misinterpretation of Input

<3:4.4.1-7.rhaos4.12.el8
  • M
Misinterpretation of Input

<3:4.4.1-29.rhaos4.15.el8
  • M
Improper Input Validation

<3:4.4.1-29.rhaos4.15.el8
  • M
Misinterpretation of Input

<3:4.4.1-18.rhaos4.14.el8
  • M
Improper Input Validation

<3:4.4.1-18.rhaos4.14.el8
  • M
Allocation of Resources Without Limits or Throttling

<3:4.4.1-7.rhaos4.12.el8
  • M
Misinterpretation of Input

<3:4.4.1-7.rhaos4.12.el8
  • M
Improper Input Validation

<3:4.4.1-7.rhaos4.12.el8
  • M
Information Exposure Through Log Files

<3:4.4.1-16.4.rhaos4.14.el8
  • M
Allocation of Resources Without Limits or Throttling

<3:4.4.1-16.4.rhaos4.14.el8
  • M
Information Exposure Through Log Files

<3:4.4.1-26.2.rhaos4.15.el8
  • M
Authentication Bypass

<3:4.4.1-26.2.rhaos4.15.el8
  • M
Information Exposure Through Log Files

<4:4.9.4-8.rhaos4.16.el8
  • M
Allocation of Resources Without Limits or Throttling

<4:4.9.4-8.rhaos4.16.el8
  • H
Allocation of Resources Without Limits or Throttling

<3:4.4.1-9.3.rhaos4.13.el8
  • H
Allocation of Resources Without Limits or Throttling

<3:4.4.1-25.2.rhaos4.15.el8
  • M
Improper Input Validation

*
  • M
Allocation of Resources Without Limits or Throttling

<3:4.4.1-7.rhaos4.12.el8
  • H
Improper Validation of Integrity Check Value

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Resource Exhaustion

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Arbitrary Code Injection

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Misinterpretation of Input

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Improper Input Validation

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Improper Input Validation

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Information Exposure

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Incorrect Behavior Order

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Information Exposure

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Incorrect Behavior Order

<4:4.9.4-5.1.rhaos4.16.el8
  • M
Truncation of Security-relevant Information

<3:4.4.1-14.4.rhaos4.14.el8
  • H
Arbitrary Command Injection

<3:4.4.1-3.2.rhaos4.12.el8
  • H
Link Following

<3:4.4.1-3.2.rhaos4.12.el8
  • H
Resource Exhaustion

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Resource Exhaustion

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Allocation of Resources Without Limits or Throttling

<3:4.4.1-10.1.rhaos4.14.el8
  • H
CVE-2023-39321

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Cross-site Scripting (XSS)

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Cross-site Scripting (XSS)

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Resource Exhaustion

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Resource Exhaustion

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Use of a Broken or Risky Cryptographic Algorithm

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Use After Free

<3:4.4.1-10.1.rhaos4.14.el8
  • H
CVE-2023-2728

<3:4.4.1-10.1.rhaos4.14.el8
  • H
CVE-2023-2727

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Resource Exhaustion

<3:4.4.1-10.1.rhaos4.14.el8
  • H
Arbitrary Command Injection

<3:4.4.1-3.2.rhaos4.12.el8
  • H
Arbitrary Command Injection

<3:4.4.1-23.2.rhaos4.15.el8
  • H
Link Following

<3:4.4.1-23.2.rhaos4.15.el8
  • H
Arbitrary Command Injection

<3:4.4.1-13.4.rhaos4.14.el8
  • H
Link Following

<3:4.4.1-13.4.rhaos4.14.el8
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<3:4.4.1-7.3.rhaos4.13.el8
  • H
Link Following

<3:4.4.1-7.3.rhaos4.13.el8
  • H
Resource Exhaustion

<3:4.4.1-5.3.rhaos4.13.el8
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • H
Resource Exhaustion

<3:4.4.1-13.4.rhaos4.14.el8
  • H
Memory Leak

<3:4.4.1-5.2.rhaos4.13.el8
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<3:4.4.1-13.4.rhaos4.14.el8
  • H
Memory Leak

<3:4.4.1-11.3.rhaos4.14.el8
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<3:4.4.1-3.2.rhaos4.12.el8
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<3:4.4.1-2.1.rhaos4.12.el8
  • H
Memory Leak

<3:4.4.1-2.1.rhaos4.12.el8
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<3:4.4.1-23.2.rhaos4.15.el8
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<3:4.4.1-21.1.rhaos4.15.el8
  • H
Memory Leak

<3:4.4.1-21.1.rhaos4.15.el8
  • H
Memory Leak

<3:4.4.1-2.1.rhaos4.12.el8
  • H
Link Following

<3:4.4.1-3.2.rhaos4.12.el8
  • M
Resource Exhaustion

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Improper Handling of Highly Compressed Data (Data Amplification)

<3:4.4.1-2.1.rhaos4.12.el8
  • M
Improper Input Validation

<3:4.4.1-7.rhaos4.12.el8
  • H
Improper Input Validation

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Arbitrary Code Injection

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<3:4.4.1-2.1.rhaos4.12.el8
  • H
Misinterpretation of Input

<4:4.9.4-5.1.rhaos4.16.el8
  • H
Truncation of Security-relevant Information

<3:4.4.1-21.rhaos4.15.el8
  • H
Information Exposure

<3:4.4.1-21.rhaos4.15.el8
  • H
Resource Exhaustion

<3:4.4.1-21.rhaos4.15.el8
  • H
Resource Exhaustion

<3:4.4.1-21.rhaos4.15.el8
  • H
Truncation of Security-relevant Information

<3:4.4.1-21.rhaos4.15.el8
  • H
Information Exposure

<3:4.4.1-21.rhaos4.15.el8
  • H
Resource Exhaustion

<3:4.4.1-21.rhaos4.15.el8
  • H
Cross-site Scripting (XSS)

<3:4.4.1-10.1.rhaos4.14.el8
  • M
HTTP Response Splitting

*
  • H
Use of a Broken or Risky Cryptographic Algorithm

<2:4.0.2-7.rhaos4.11.el8
  • H
Use of a Broken or Risky Cryptographic Algorithm

<0:3.2.3-1.1.rhaos4.10.el8
  • H
Directory Traversal

<3:4.4.1-3.rhaos4.13.el8
  • H
Exposure of Data Element to Wrong Session

<3:4.2.0-4.1.rhaos4.12.el8
  • H
Exposure of Data Element to Wrong Session

<3:4.2.0-4.1.rhaos4.12.el8
  • H
Improper Handling of Unicode Encoding

<3:4.2.0-4.1.rhaos4.12.el8
  • H
Improper Handling of Unicode Encoding

<3:4.2.0-4.1.rhaos4.12.el8
  • H
Improper Handling of Unicode Encoding

<2:4.0.2-7.rhaos4.11.el8
  • H
Improper Handling of Unicode Encoding

<0:3.2.3-1.1.rhaos4.10.el8
  • H
Improper Handling of Unicode Encoding

<3:4.4.1-4.rhaos4.13.el8
  • M
Improper Handling of Unicode Encoding

*
  • M
Improper Handling of Unicode Encoding

*
  • H
Loop with Unreachable Exit Condition ('Infinite Loop')

<3:4.4.1-4.rhaos4.13.el8
  • H
Resource Exhaustion

<3:4.4.1-4.rhaos4.13.el8
  • H
Arbitrary Code Injection

<3:4.4.1-4.rhaos4.13.el8
  • H
Resource Exhaustion

<3:4.4.1-4.rhaos4.13.el8
  • H
Improper Input Validation

<3:4.4.1-3.rhaos4.13.el8
  • M
Improper Certificate Validation

<2:4.2.0-1.rhaos4.12.el8
  • M
Improper Certificate Validation

<2:4.2.0-1.rhaos4.12.el8
  • M
Incorrect Default Permissions

<2:4.2.0-1.rhaos4.12.el8
  • M
Incorrect Default Permissions

<2:4.2.0-1.rhaos4.12.el8
  • M
Improper Initialization

<2:4.2.0-1.rhaos4.12.el8
  • M
Improper Initialization

<2:4.2.0-1.rhaos4.12.el8
  • H
Improper Initialization

<3:4.4.1-3.rhaos4.13.el8
  • M
Server-Side Request Forgery (SSRF)

<2:4.2.0-1.rhaos4.12.el8
  • M
Server-Side Request Forgery (SSRF)

<2:4.2.0-1.rhaos4.12.el8
  • M
Directory Traversal

<2:4.2.0-1.rhaos4.12.el8
  • M
Directory Traversal

<2:4.2.0-1.rhaos4.12.el8
  • M
Improper Access Control

<2:4.2.0-1.rhaos4.12.el8
  • M
Improper Access Control

<2:4.2.0-1.rhaos4.12.el8
  • M
Resource Exhaustion

<2:4.2.0-1.rhaos4.12.el8
  • M
Resource Exhaustion

<2:4.2.0-1.rhaos4.12.el8
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

*
  • M
Improper Output Neutralization for Logs

<0:1.9.3-3.rhaos4.6.el8
  • M
Improper Validation of Certificate with Host Mismatch

<0:1.9.3-3.rhaos4.6.el8
  • M
Missing Authorization

<0:1.9.3-3.rhaos4.6.el8
  • M
Directory Traversal

<0:1.9.3-3.rhaos4.6.el8
  • M
Insufficiently Protected Credentials

<0:1.9.3-3.rhaos4.6.el8
  • H
OS Command Injection

<0:1.0.2-3.dev.git96ccc2e.el8_0
  • H
Resource Exhaustion

<3:4.4.1-4.rhaos4.13.el8
  • H
Resource Exhaustion

<3:4.4.1-4.rhaos4.13.el8
  • H
Resource Exhaustion

<3:4.4.1-4.rhaos4.13.el8
  • H
Path Equivalence

<3:4.4.1-4.rhaos4.13.el8
  • L
Placement of User into Incorrect Group

*
  • H
Allocation of Resources Without Limits or Throttling

<3:4.4.1-3.rhaos4.13.el8
  • H
Time-of-check Time-of-use (TOCTOU)

<3:4.4.1-3.rhaos4.13.el8
  • H
HTTP Request Smuggling

<3:4.4.1-3.rhaos4.13.el8
  • H
Allocation of Resources Without Limits or Throttling

<0:3.2.3-1.1.rhaos4.10.el8
  • H
Allocation of Resources Without Limits or Throttling

<2:4.0.2-7.rhaos4.11.el8
  • H
Allocation of Resources Without Limits or Throttling

<3:4.4.1-4.rhaos4.13.el8
  • H
Resource Exhaustion

<3:4.4.1-3.rhaos4.13.el8
  • M
Link Following

*
  • L
Directory Traversal

*
  • M
Algorithmic Complexity

<3:4.2.0-6.1.rhaos4.12.el8
  • M
Algorithmic Complexity

<3:4.2.0-6.1.rhaos4.12.el8
  • M
CVE-2022-41715

<2:4.2.0-1.rhaos4.12.el8
  • M
CVE-2022-41715

<3:4.2.0-6.1.rhaos4.12.el8
  • M
Allocation of Resources Without Limits or Throttling

<2:4.2.0-1.rhaos4.12.el8
  • M
Allocation of Resources Without Limits or Throttling

<3:4.2.0-6.1.rhaos4.12.el8
  • M
HTTP Request Smuggling

<2:4.2.0-1.rhaos4.12.el8
  • M
HTTP Request Smuggling

<3:4.2.0-6.1.rhaos4.12.el8
  • M
Directory Traversal

<3:4.2.0-6.1.rhaos4.12.el8
  • M
Directory Traversal

<2:4.2.0-1.rhaos4.12.el8
  • M
Resource Exhaustion

<3:4.2.0-6.1.rhaos4.12.el8
  • M
Resource Exhaustion

<2:4.2.0-1.rhaos4.12.el8
  • H
Placement of User into Incorrect Group

<3:4.4.1-3.rhaos4.13.el8
  • L
Placement of User into Incorrect Group

*
  • M
Resource Exhaustion

<2:4.2.0-1.rhaos4.12.el8
  • M
Resource Exhaustion

<2:4.2.0-1.rhaos4.12.el8
  • M
Information Exposure

<2:4.2.0-1.rhaos4.12.el8
  • M
Information Exposure

<2:4.2.0-1.rhaos4.12.el8
  • M
Improperly Controlled Sequential Memory Allocation

<2:4.2.0-1.rhaos4.12.el8
  • M
Improperly Controlled Sequential Memory Allocation

<2:4.2.0-1.rhaos4.12.el8
  • M
HTTP Request Smuggling

<2:4.2.0-1.rhaos4.12.el8
  • M
HTTP Request Smuggling

<2:4.0.2-6.rhaos4.11.el8
  • M
HTTP Request Smuggling

<2:4.2.0-1.rhaos4.12.el8
  • M
Improper Input Validation

*
  • M
Incorrect Authorization

<2:4.0.2-6.rhaos4.11.el8
  • L
Authentication Bypass by Primary Weakness

*
  • M
Incorrect Default Permissions

<2:4.0.2-6.rhaos4.11.el8
  • H
Insufficient Entropy

<2:4.0.2-7.rhaos4.11.el8
  • H
Integer Overflow or Wraparound

<2:4.0.2-7.rhaos4.11.el8
  • H
Buffer Overflow

<2:4.0.2-7.rhaos4.11.el8
  • H
Improper Preservation of Permissions

<0:1.9.3-5.rhaos4.6.el8
  • M
Incorrect Default Permissions

*
  • M
Missing Release of Resource after Effective Lifetime

<2:4.0.2-6.rhaos4.11.el8
  • H
Use of a Broken or Risky Cryptographic Algorithm

<3:4.4.1-3.rhaos4.13.el8
  • M
Use of a Broken or Risky Cryptographic Algorithm

<2:4.0.2-6.rhaos4.11.el8
  • M
Resource Exhaustion

<2:4.0.2-6.rhaos4.11.el8
  • M
Unchecked Return Value

<2:4.0.2-6.rhaos4.11.el8
  • M
Incorrect Authorization

<2:4.0.2-6.rhaos4.11.el8
  • H
Integer Overflow or Wraparound

<2:4.0.2-7.rhaos4.11.el8
  • M
Improper Input Validation

<2:4.0.2-6.rhaos4.11.el8
  • M
Race Condition

*
  • M
Improper Input Validation

*
  • M
Origin Validation Error

*
  • M
Improper Cross-boundary Removal of Sensitive Data

<0:1.9.3-3.rhaos4.6.el8
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.9.3-3.rhaos4.6.el8
  • L
Directory Traversal

<0:1.6.4-10.rhaos4.3.el8
  • L
Directory Traversal

<0:1.0.2-4.dev.git96ccc2e.rhaos4.1.el8
  • H
Directory Traversal

<0:1.4.2-6.rhaos4.2.el8
  • L
Files or Directories Accessible to External Parties

<0:1.6.4-7.el8
  • M
Link Following

*
  • L
NULL Pointer Dereference

*
  • L
Race Condition

<0:1.9.3-2.rhaos4.5.el8
  • M
Race Condition

<0:1.9.3-3.rhaos4.6.el8
  • L
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.9.3-2.rhaos4.5.el8
  • M
Loop with Unreachable Exit Condition ('Infinite Loop')

<0:1.9.3-3.rhaos4.6.el8
  • M
Information Exposure

*
  • L
Use After Free

<0:1.6.4-10.rhaos4.3.el8