DirectorySecurity Advisories
Sign In
Security Advisories

CGA-rj2h-qgvq-f849

Published

Last updated

https://images.chainguard.dev/security/CGA-rj2h-qgvq-f849
Package

kubevela

Latest Update
Fixed
Fixed Version

1.9.13-r2

Aliases
  • CVE-2024-36621
  • GHSA-2mj3-vfvx-fc43

Severity

6.5

Medium

CVSS V3

Summary

Moby Race Condition vulnerability

Description

moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used to trigger concurrent builds that call the EnsureLayer function resulting in resource leaks/exhaustion.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images