In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade RHEL:8 container-tools:rhel8/buildah to version 0:1.11.6-6.module+el8.1.1+5865+cc793d95 or higher.
This issue was patched in RHSA-2020:1379.
Note: Versions mentioned in the description apply only to the upstream container-tools:rhel8/buildah package and not the container-tools:rhel8/buildah package as distributed by RHEL.
See How to fix? for RHEL:8 relevant fixed versions and status.
In libslirp 4.1.0, as used in QEMU 4.2.0, tcp_subr.c misuses snprintf return values, leading to a buffer overflow in later code.