Oval Definition:oval:org.opensuse.security:def:20201726
Revision Date:2023-06-22Version:1
Title:CVE-2020-1726
Description:

A flaw was discovered in Podman where it incorrectly allows containers when created to overwrite existing files in volumes, even if they are mounted as read-only. When a user runs a malicious container or a container based on a malicious image with an attached volume that is used for the first time, it is possible to trigger the flaw and overwrite files in the volume.This issue was introduced in version 1.6.0.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2020-1726
SUSE-SU-2020:2731-1
openSUSE-SU-2020:1552-1
openSUSE-SU-2020:1559-1
Mitre CVE-2020-1726
SUSE CVE-2020-1726
SUSE-SU-2020:2731-1
openSUSE-SU-2020:1552-1
openSUSE-SU-2020:1559-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
openSUSE Tumbleweed
SUSE Linux Enterprise Desktop 15 SP1
SUSE Linux Enterprise Desktop 15 SP2
SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise High Performance Computing 15 SP2
SUSE Linux Enterprise High Performance Computing 15 SP3
SUSE Linux Enterprise High Performance Computing 15 SP4
SUSE Linux Enterprise High Performance Computing 15 SP5
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for Basesystem 15 SP2
SUSE Linux Enterprise Module for Containers 15 SP1
SUSE Linux Enterprise Module for Containers 15 SP2
SUSE Linux Enterprise Module for Containers 15 SP3
SUSE Linux Enterprise Module for Containers 15 SP4
SUSE Linux Enterprise Module for Containers 15 SP5
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server 15 SP2
SUSE Linux Enterprise Server 15 SP3
SUSE Linux Enterprise Server 15 SP4
SUSE Linux Enterprise Server 15 SP5
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP2
SUSE Linux Enterprise Server for SAP Applications 15 SP3
SUSE Linux Enterprise Server for SAP Applications 15 SP4
SUSE Linux Enterprise Server for SAP Applications 15 SP5
SUSE Linux Enterprise Storage 6
SUSE Linux Enterprise Storage 7
SUSE Linux Enterprise Storage 7.1
SUSE Manager Proxy 4.0
SUSE Manager Proxy 4.1
SUSE Manager Proxy 4.2
SUSE Manager Proxy 4.3
SUSE Manager Retail Branch Server 4.0
SUSE Manager Retail Branch Server 4.1
SUSE Manager Retail Branch Server 4.2
SUSE Manager Retail Branch Server 4.3
SUSE Manager Server 4.0
SUSE Manager Server 4.1
SUSE Manager Server 4.2
SUSE Manager Server 4.3
Product(s):
Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • OR SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND libcontainers-common-20200727-3.12 is installed
  • OR Package Information
  • SUSE Linux Enterprise Module for Containers 15 SP1 is installed
  • OR SUSE Linux Enterprise Module for Containers 15 SP2 is installed
  • AND
  • conmon-2.0.20-3.6 is installed
  • OR fuse-overlayfs-1.1.2-3.9 is installed
  • OR podman-2.0.6-4.25 is installed
  • OR podman-cni-config-2.0.6-4.25 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • conmon-2.0.20-lp151.5 is installed
  • AND conmon is signed with openSUSE key
  • OR
  • fuse-overlayfs-1.1.2-lp151.8 is installed
  • AND fuse-overlayfs is signed with openSUSE key
  • OR
  • libcontainers-common-20200727-lp151.2.10 is installed
  • AND libcontainers-common is signed with openSUSE key
  • OR
  • podman-2.0.6-lp151.3.21 is installed
  • AND podman is signed with openSUSE key
  • OR
  • podman-cni-config-2.0.6-lp151.3.21 is installed
  • AND podman-cni-config is signed with openSUSE key
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • conmon-2.0.20-lp152.4.3.1 is installed
  • AND conmon is signed with openSUSE key
  • OR
  • fuse-overlayfs-1.1.2-lp152.2.3.1 is installed
  • AND fuse-overlayfs is signed with openSUSE key
  • OR
  • libcontainers-common-20200727-lp152.2.3.1 is installed
  • AND libcontainers-common is signed with openSUSE key
  • OR
  • podman-2.0.6-lp152.4.3.1 is installed
  • AND podman is signed with openSUSE key
  • OR
  • podman-cni-config-2.0.6-lp152.4.3.1 is installed
  • AND podman-cni-config is signed with openSUSE key
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND libcontainers-common-20200727-3.12 is installed
  • OR Package Information
  • SUSE Linux Enterprise Module for Containers 15 SP1 is installed
  • AND
  • conmon-2.0.20-3.6 is installed
  • OR fuse-overlayfs-1.1.2-3.9 is installed
  • OR podman-2.0.6-4.25 is installed
  • OR podman-cni-config-2.0.6-4.25 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND libcontainers-common-20200727-3.12 is installed
  • OR Package Information
  • SUSE Linux Enterprise Module for Containers 15 SP2 is installed
  • AND
  • conmon-2.0.20-3.6 is installed
  • OR fuse-overlayfs-1.1.2-3.9 is installed
  • OR podman-2.0.6-4.25 is installed
  • OR podman-cni-config-2.0.6-4.25 is installed
  • Definition Synopsis
  • openSUSE Tumbleweed is installed
  • AND Package Information
  • podman-3.3.1-2.1 is installed
  • OR podman-cni-config-3.3.1-2.1 is installed
  • OR podman-docker-3.3.1-2.1 is installed
  • OR podman-remote-3.3.1-2.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND libcontainers-common-20200727-3.12.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Module for Containers 15 SP1 is installed
  • AND
  • conmon-2.0.20-3.6.1 is installed
  • OR fuse-overlayfs-1.1.2-3.9.1 is installed
  • OR podman-2.0.6-4.25.1 is installed
  • OR podman-cni-config-2.0.6-4.25.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND libcontainers-common-20200727-3.12.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Module for Containers 15 SP2 is installed
  • AND
  • conmon-2.0.20-3.6.1 is installed
  • OR fuse-overlayfs-1.1.2-3.9.1 is installed
  • OR podman-2.0.6-4.25.1 is installed
  • OR podman-cni-config-2.0.6-4.25.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • OR SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND libcontainers-common-20200727-3.12.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Module for Containers 15 SP1 is installed
  • OR SUSE Linux Enterprise Module for Containers 15 SP2 is installed
  • AND
  • conmon-2.0.20-3.6.1 is installed
  • OR fuse-overlayfs-1.1.2-3.9.1 is installed
  • OR podman-2.0.6-4.25.1 is installed
  • OR podman-cni-config-2.0.6-4.25.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Module for Containers 15 SP3 is installed
  • AND
  • podman-2.1.1-4.28.1 is installed
  • OR podman-cni-config-2.1.1-4.28.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • OR SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • AND libcontainers-common-20200727-3.12.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
  • OR SUSE Linux Enterprise Module for Containers 15 SP3 is installed
  • OR SUSE Linux Enterprise Server 15 SP3 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
  • OR SUSE Linux Enterprise Storage 7.1 is installed
  • OR SUSE Manager Proxy 4.2 is installed
  • OR SUSE Manager Retail Branch Server 4.2 is installed
  • OR SUSE Manager Server 4.2 is installed
  • AND Package Information
  • podman-2.1.1-4.28.1 is installed
  • OR podman-cni-config-2.1.1-4.28.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Desktop 15 SP2 is installed
  • OR SUSE Linux Enterprise High Performance Computing 15 SP2 is installed
  • OR SUSE Linux Enterprise Module for Basesystem 15 SP2 is installed
  • OR SUSE Linux Enterprise Server 15 SP2 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP2 is installed
  • OR SUSE Linux Enterprise Storage 7 is installed
  • OR SUSE Manager Proxy 4.1 is installed
  • OR SUSE Manager Retail Branch Server 4.1 is installed
  • OR SUSE Manager Server 4.1 is installed
  • AND libcontainers-common-20200727-3.12.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise High Performance Computing 15 SP2 is installed
  • OR SUSE Linux Enterprise Module for Containers 15 SP2 is installed
  • OR SUSE Linux Enterprise Server 15 SP2 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP2 is installed
  • OR SUSE Linux Enterprise Storage 7 is installed
  • OR SUSE Manager Proxy 4.1 is installed
  • OR SUSE Manager Retail Branch Server 4.1 is installed
  • OR SUSE Manager Server 4.1 is installed
  • AND
  • conmon-2.0.20-3.6.1 is installed
  • OR fuse-overlayfs-1.1.2-3.9.1 is installed
  • OR podman-2.0.6-4.25.1 is installed
  • OR podman-cni-config-2.0.6-4.25.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise High Performance Computing 15 SP3 is installed
  • OR SUSE Linux Enterprise Module for Containers 15 SP3 is installed
  • OR SUSE Linux Enterprise Server 15 SP3 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP3 is installed
  • OR SUSE Linux Enterprise Storage 7.1 is installed
  • OR SUSE Manager Proxy 4.2 is installed
  • OR SUSE Manager Retail Branch Server 4.2 is installed
  • OR SUSE Manager Server 4.2 is installed
  • AND
  • podman-2.1.1-4.28.1 is installed
  • OR podman-cni-config-2.1.1-4.28.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise High Performance Computing 15 SP4 is installed
  • OR SUSE Linux Enterprise Module for Containers 15 SP4 is installed
  • OR SUSE Linux Enterprise Server 15 SP4 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP4 is installed
  • OR SUSE Manager Proxy 4.3 is installed
  • OR SUSE Manager Retail Branch Server 4.3 is installed
  • OR SUSE Manager Server 4.3 is installed
  • AND Package Information
  • podman-3.4.4-150400.2.14 is installed
  • OR podman-cni-config-3.4.4-150400.2.14 is installed
  • OR podman-docker-3.4.4-150400.2.14 is installed
  • OR podman-remote-3.4.4-150400.2.14 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise High Performance Computing 15 SP5 is installed
  • OR SUSE Linux Enterprise Module for Containers 15 SP5 is installed
  • OR SUSE Linux Enterprise Server 15 SP5 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 15 SP5 is installed
  • AND Package Information
  • podman-4.4.4-150500.1.4 is installed
  • OR podman-cni-config-4.4.4-150500.1.4 is installed
  • OR podman-docker-4.4.4-150500.1.4 is installed
  • OR podman-remote-4.4.4-150500.1.4 is installed
  • BACK