Risk Scores
CVSS v3.1
4.699999809265137
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:L/A:N
EPSS Score
0.02%
5.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | Red Hat OpenShift Container Platform 4 | |
| 0, 0 | ||
| Red Hat | Red Hat Enterprise Linux 9.4 Extended Update Support | 2:1.33.11-1.el9_4, 2:1.33.11-1.el9_4 |
| github.com | containers/buildah | 0, 0 |
| Red Hat | Red Hat Enterprise Linux 9 | 4:5.2.2-9.el9_5, 4:5.2.2-9.el9_5, 4:4.9.4-16.el9_4 |
| Red Hat | Red Hat Enterprise Linux 10 | |
| github.com | containers/podman/v4 | 0, 0 |
| Red Hat | Red Hat OpenShift Container Platform 4.16 | 416.94.202411201433-0, 416.94.202411201433-0 |
| 0, 0 | ||
| Red Hat | Red Hat Enterprise Linux 9 | 2:1.37.5-1.el9_5, 2:1.37.5-1.el9_5 |
| github.com | containers/podman/v5 | 0, 0 |
| github.com | containers/podman/v2 | 0, 0 |
| Red Hat | Red Hat Enterprise Linux 8 | 8100020241023085649.afee755d, 8100020241023085649.afee755d |
| Red Hat | Red Hat OpenShift Container Platform 4 | |
| Red Hat | Red Hat Enterprise Linux 10 | |
| github.com | containers/podman/v3 | 0, 0 |
| github.com | containers/podman | 0, 0 |
Timeline
- Oct 1, 2024 CVE Published
- Oct 1, 2024 PoC Published
- Oct 2, 2024 EPSS Score
- Oct 5, 2024 Coalition ESS Score
- Oct 21, 2024 EPSS Score
- Nov 6, 2024 Coalition ESS Score
- Nov 8, 2024 EPSS Score
- Nov 11, 2024 Coalition ESS Score
- Nov 12, 2024 Coalition ESS Score
- Nov 27, 2024 EPSS Score
- Dec 16, 2024 EPSS Score
- Dec 20, 2024 CVE Updated
References
- RHSA-2024:10147 vendor-advisory
- RHSA-2024:8846 vendor-advisory
- RHSA-2024:9051 vendor-advisory
- RHSA-2024:9454 vendor-advisory
- RHSA-2024:9459 vendor-advisory
- RHSA-2024:9926 vendor-advisory
- https://access.redhat.com/security/cve/CVE-2024-9407 vdb
- RHBZ#2315887 issue
- https://github.com/advisories/GHSA-fhqq-8f65-5xfc url
- https://security.netapp.com/advisory/ntap-20241220-0010/ url
- https://nvd.nist.gov/vuln/detail/CVE-2024-9407 advisory
- https://github.com/containers/buildah/commit/e4e2ad5ca2088d7c388109394135ead7aaf1f4f4 url
- https://github.com/containers/podman/releases/tag/v5.2.4 url
- https://pkg.go.dev/vuln/GO-2024-3169 url
- https://security.netapp.com/advisory/ntap-20241220-0010 url