{"affected":[{"ecosystem_specific":{"binaries":[{"containerd":"1.2.6-lp151.2.6.1","containerd-ctr":"1.2.6-lp151.2.6.1","docker":"19.03.1_ce-lp151.2.12.1","docker-bash-completion":"19.03.1_ce-lp151.2.12.1","docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1","docker-runc":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1","docker-test":"19.03.1_ce-lp151.2.12.1","docker-zsh-completion":"19.03.1_ce-lp151.2.12.1","golang-github-docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.0","name":"containerd","purl":"pkg:rpm/opensuse/containerd&distro=openSUSE%20Leap%2015.0"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.2.6-lp151.2.6.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"containerd":"1.2.6-lp151.2.6.1","containerd-ctr":"1.2.6-lp151.2.6.1","docker":"19.03.1_ce-lp151.2.12.1","docker-bash-completion":"19.03.1_ce-lp151.2.12.1","docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1","docker-runc":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1","docker-test":"19.03.1_ce-lp151.2.12.1","docker-zsh-completion":"19.03.1_ce-lp151.2.12.1","golang-github-docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.0","name":"docker","purl":"pkg:rpm/opensuse/docker&distro=openSUSE%20Leap%2015.0"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"19.03.1_ce-lp151.2.12.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"containerd":"1.2.6-lp151.2.6.1","containerd-ctr":"1.2.6-lp151.2.6.1","docker":"19.03.1_ce-lp151.2.12.1","docker-bash-completion":"19.03.1_ce-lp151.2.12.1","docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1","docker-runc":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1","docker-test":"19.03.1_ce-lp151.2.12.1","docker-zsh-completion":"19.03.1_ce-lp151.2.12.1","golang-github-docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.0","name":"docker-runc","purl":"pkg:rpm/opensuse/docker-runc&distro=openSUSE%20Leap%2015.0"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"containerd":"1.2.6-lp151.2.6.1","containerd-ctr":"1.2.6-lp151.2.6.1","docker":"19.03.1_ce-lp151.2.12.1","docker-bash-completion":"19.03.1_ce-lp151.2.12.1","docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1","docker-runc":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1","docker-test":"19.03.1_ce-lp151.2.12.1","docker-zsh-completion":"19.03.1_ce-lp151.2.12.1","golang-github-docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.0","name":"golang-github-docker-libnetwork","purl":"pkg:rpm/opensuse/golang-github-docker-libnetwork&distro=openSUSE%20Leap%2015.0"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"containerd":"1.2.6-lp151.2.6.1","containerd-ctr":"1.2.6-lp151.2.6.1","docker":"19.03.1_ce-lp151.2.12.1","docker-bash-completion":"19.03.1_ce-lp151.2.12.1","docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1","docker-runc":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1","docker-test":"19.03.1_ce-lp151.2.12.1","docker-zsh-completion":"19.03.1_ce-lp151.2.12.1","golang-github-docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.1","name":"containerd","purl":"pkg:rpm/opensuse/containerd&distro=openSUSE%20Leap%2015.1"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.2.6-lp151.2.6.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"containerd":"1.2.6-lp151.2.6.1","containerd-ctr":"1.2.6-lp151.2.6.1","docker":"19.03.1_ce-lp151.2.12.1","docker-bash-completion":"19.03.1_ce-lp151.2.12.1","docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1","docker-runc":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1","docker-test":"19.03.1_ce-lp151.2.12.1","docker-zsh-completion":"19.03.1_ce-lp151.2.12.1","golang-github-docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.1","name":"docker","purl":"pkg:rpm/opensuse/docker&distro=openSUSE%20Leap%2015.1"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"19.03.1_ce-lp151.2.12.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"containerd":"1.2.6-lp151.2.6.1","containerd-ctr":"1.2.6-lp151.2.6.1","docker":"19.03.1_ce-lp151.2.12.1","docker-bash-completion":"19.03.1_ce-lp151.2.12.1","docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1","docker-runc":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1","docker-test":"19.03.1_ce-lp151.2.12.1","docker-zsh-completion":"19.03.1_ce-lp151.2.12.1","golang-github-docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.1","name":"docker-runc","purl":"pkg:rpm/opensuse/docker-runc&distro=openSUSE%20Leap%2015.1"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"containerd":"1.2.6-lp151.2.6.1","containerd-ctr":"1.2.6-lp151.2.6.1","docker":"19.03.1_ce-lp151.2.12.1","docker-bash-completion":"19.03.1_ce-lp151.2.12.1","docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1","docker-runc":"1.0.0rc8+gitr3826_425e105d5a03-lp151.3.6.1","docker-test":"19.03.1_ce-lp151.2.12.1","docker-zsh-completion":"19.03.1_ce-lp151.2.12.1","golang-github-docker-libnetwork":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.1","name":"golang-github-docker-libnetwork","purl":"pkg:rpm/opensuse/golang-github-docker-libnetwork&distro=openSUSE%20Leap%2015.1"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"0.7.0.1+gitr2800_fc5a7d91d54c-lp151.2.6.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for containerd, docker, docker-runc, golang-github-docker-libnetwork fixes the following issues:\n\nDocker:\n\n- CVE-2019-14271: Fixed a code injection if the nsswitch facility dynamically loaded a library inside a chroot (bsc#1143409).\n- CVE-2019-13509: Fixed an information leak in the debug log (bsc#1142160).\n- Update to version 19.03.1-ce, see changelog at /usr/share/doc/packages/docker/CHANGELOG.md (bsc#1142413, bsc#1139649).\n\nrunc:\n\n- Use %config(noreplace) for /etc/docker/daemon.json (bsc#1138920).\n- Update to runc 425e105d5a03, which is required by Docker (bsc#1139649).\n\ncontainerd:\n\n- CVE-2019-5736: Fixed a container breakout vulnerability (bsc#1121967).\n- Update to containerd v1.2.6, which is required by docker (bsc#1139649).\n\ngolang-github-docker-libnetwork:\n\n- Update to version git.fc5a7d91d54cc98f64fc28f9e288b46a0bee756c, which is required by docker (bsc#1142413, bsc#1139649).\n\nThis update was imported from the SUSE:SLE-15:Update update project.","id":"openSUSE-SU-2019:2021-1","modified":"2019-08-29T16:21:56Z","published":"2019-08-29T16:21:56Z","references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/22XH5BZGCHAOESP2KM3ZT4XHBXIVMEZK/#22XH5BZGCHAOESP2KM3ZT4XHBXIVMEZK"},{"type":"REPORT","url":"https://bugzilla.suse.com/1100331"},{"type":"REPORT","url":"https://bugzilla.suse.com/1121967"},{"type":"REPORT","url":"https://bugzilla.suse.com/1138920"},{"type":"REPORT","url":"https://bugzilla.suse.com/1139649"},{"type":"REPORT","url":"https://bugzilla.suse.com/1142160"},{"type":"REPORT","url":"https://bugzilla.suse.com/1142413"},{"type":"REPORT","url":"https://bugzilla.suse.com/1143409"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-10892"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-13509"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-14271"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5736"}],"related":["CVE-2018-10892","CVE-2019-13509","CVE-2019-14271","CVE-2019-5736"],"summary":"Security update for containerd, docker, docker-runc, golang-github-docker-libnetwork","upstream":["CVE-2018-10892","CVE-2019-13509","CVE-2019-14271","CVE-2019-5736"]}