CVE-2022-2989
published 2022-09-13CVE-2022-2989: An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data…
PriorityP432high7.1CVSS 3.1
AVLACLPRLUINSUCHIHAN
EPSS
0.31%
22.6th percentile
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libpod | < libpod 4.3.1+ds1-4 (bookworm) | libpod 4.3.1+ds1-4 (bookworm) |
| github.com | containerd_containerd | >= 0 < 1.5.18 | 1.5.18 |
| github.com | containerd_containerd | >= 1.6.0 < 1.6.18 | 1.6.18 |
| github.com | containers_podman_v3 | >= 0 < 3.0.1 | 3.0.1 |
| github.com | containers_podman_v4 | >= 0 < 4.2.0 | 4.2.0 |
| libpod_project | libpod | >= 0 < 3.0.1+dfsg1-3+deb11u5 | 3.0.1+dfsg1-3+deb11u5 |
| libpod_project | libpod | >= 0 < 4.3.1+ds1-4 | 4.3.1+ds1-4 |
| msrc | cbl_mariner_2.0_arm | — | — |
| msrc | cbl_mariner_2.0_x64 | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | openshift_container_platform | — | — |
| redhat | openshift_container_platform | — | — |
CVSS provenance
nvdv3.17.1HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
ghsa7.1HIGH
osv7.1HIGH
vendor_debian7.1HIGH
vendor_msrc7.1HIGH
vendor_redhat7.1HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Supplementary groups are not set up properly in github.com/containerd/containerd
osv·2023-02-16·CVSS 7.1
CVE-2023-25173 [HIGH] Supplementary groups are not set up properly in github.com/containerd/containerd
Supplementary groups are not set up properly in github.com/containerd/containerd
### Impact
A bug was found in containerd where supplementary groups are not set up properly inside a container. If an attacker has direct access to a container and manipulates their supplementary group access, they may be able to use supplementary group access to bypass primary group restrictions in some cases, potentially gaining access to sensitive information or gaining the ability to execute code in that container.
Downstream applications that use the containerd client library may be affected as well.
### Patches
This bug has been fixed in containerd v1.6.18 and v.1.5.18. Users should update to these versions and recreate containers to resolve this issue. Users who rely on a downstream application that
GHSA
Supplementary groups are not set up properly in github.com/containerd/containerd
ghsa·2023-02-16·CVSS 7.1
CVE-2023-25173 [HIGH] CWE-269 Supplementary groups are not set up properly in github.com/containerd/containerd
Supplementary groups are not set up properly in github.com/containerd/containerd
### Impact
A bug was found in containerd where supplementary groups are not set up properly inside a container. If an attacker has direct access to a container and manipulates their supplementary group access, they may be able to use supplementary group access to bypass primary group restrictions in some cases, potentially gaining access to sensitive information or gaining the ability to execute code in that container.
Downstream applications that use the containerd client library may be affected as well.
### Patches
This bug has been fixed in containerd v1.6.18 and v.1.5.18. Users should update to these versions and recreate containers to resolve this issue. Users who rely on a downstream application that
GHSA
Podman's incorrect handling of the supplementary groups may lead to data disclosure, modification
ghsa·2022-09-14
CVE-2022-2989 [HIGH] CWE-842 Podman's incorrect handling of the supplementary groups may lead to data disclosure, modification
Podman's incorrect handling of the supplementary groups may lead to data disclosure, modification
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container.
OSV
Podman's incorrect handling of the supplementary groups may lead to data disclosure, modification
osv·2022-09-14
CVE-2022-2989 [HIGH] Podman's incorrect handling of the supplementary groups may lead to data disclosure, modification
Podman's incorrect handling of the supplementary groups may lead to data disclosure, modification
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container.
OSV
CVE-2022-2989: An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data m
osv·2022-09-13·CVSS 7.1
CVE-2022-2989 [HIGH] CVE-2022-2989: An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data m
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container.
Ubuntu
Podman vulnerability
vendor_ubuntu·2023-08-16
CVE-2022-2989 Podman vulnerability
Title: Podman vulnerability
Summary: Podman could be made to expose sensitive information or
execute binary code.
It was discovered that Podman incorrectly handled certain supplementary groups.
An attacker could possibly use this issue to expose sensitive information
or execute binary code.
Instructions: In general, a standard system update will make all the necessary changes.
Microsoft
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to th
vendor_msrc·2022-09-13·CVSS 7.1
CVE-2022-2989 [HIGH] CWE-842 An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to th
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which the distro is composed. Microsoft is committed to transparency in this work which is why we began publis
Red Hat
podman: possible information disclosure and modification
vendor_redhat·2022-08-22·CVSS 7.1
CVE-2022-2989 [HIGH] CWE-842 podman: possible information disclosure and modification
podman: possible information disclosure and modification
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container.
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container.
Package: podman (Red Hat Enterprise Linux 7) - Fix deferred
P
Debian
CVE-2022-2989: libpod - An incorrect handling of the supplementary groups in the Podman container engine...
vendor_debian·2022·CVSS 7.1
CVE-2022-2989 [HIGH] CVE-2022-2989: libpod - An incorrect handling of the supplementary groups in the Podman container engine...
An incorrect handling of the supplementary groups in the Podman container engine might lead to the sensitive information disclosure or possible data modification if an attacker has direct access to the affected container where supplementary groups are used to set access permissions and is able to execute a binary code in that container.
Scope: local
bookworm: resolved (fixed in 4.3.1+ds1-4)
bullseye: resolved (fixed in 3.0.1+dfsg1-3+deb11u5)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.redhat.com/show_bug.cgi?id=2121445https://www.benthamsgaze.org/2022/08/22/vulnerability-in-linux-containers-investigation-and-mitigation/https://bugzilla.redhat.com/show_bug.cgi?id=2121445https://www.benthamsgaze.org/2022/08/22/vulnerability-in-linux-containers-investigation-and-mitigation/
2022-09-13
Published