Junglewise Threat Intelligence

CVE-2022-2989: Podman's incorrect handling of the supplementary groups may lead to data disclosure, modification

CVE-2022-2989 · Severity: low · CVSS 3.1 · Published 2022-09-14

Technologies: github.com/containers/podman/v4 (Go), github.com/containers/podman/v3 (Go). Vendors: Go.

Executive brief

Podman's incorrect handling of the supplementary groups may lead to data disclosure, modification

Affected products

  • Go github.com/containers/podman/v4
  • Go github.com/containers/podman/v3

Related threats