PT-2022-18405 · Red Hat · Podman
Mauro Matteo Cascella
·
Published
2022-09-01
·
Updated
2023-07-21
·
CVE-2022-2739
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
podman versions prior to the version fixed via RHSA-2020:5056
Description
The issue could possibly allow an attacker to gain access to sensitive information stored in environment variables, such as those defined by
environment variable.Recommendations
For versions prior to the one fixed via RHSA-2020:5056, update to a version that includes the fix for the issue.
Fix
Information Disclosure
Cleartext Storage of Sensitive Information
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Podman