Lucene search

K
osvGoogleOSV:RLSA-2019:4273
HistoryDec 17, 2019 - 9:20 a.m.

Important: container-tools:1.0 security update

2019-12-1709:20:02
Google
osv.dev
3

0.821 High

EPSS

Percentile

98.4%

The container-tools module contains tools for working with containers, notably podman, buildah, skopeo, and runc.

Security Fix(es):

  • HTTP/2: flood using PING frames results in unbounded memory growth (CVE-2019-9512)

  • HTTP/2: flood using HEADERS frames results in unbounded memory growth (CVE-2019-9514)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.