Skip to content

Severe Vulnerabilities in Moby BuildKit and OCI runc: CVE-2024-23651, CVE-2024-23652, CVE-2024-23653, CVE-2024-21626 #7215

@MatthiasCloudOptimizer

Description

@MatthiasCloudOptimizer

Hello everyone,
is IoT Edge (EFLWO) affected and if so, until when will there be an update?

Detailed background
https://socradar.io/severe-vulnerabilities-in-moby-buildkit-and-oci-runc-cve-2024-23651-cve-2024-23652-cve-2024-23653-cve-2024-21626/

This release contains security fixes for the following CVEs
affecting Docker Engine and its components: https://github.com/moby/moby/releases/tag/v25.0.2

Thanks!

Kind regards,
Matthias

I posted the same issue in the iotedge-eflow repo last week and still haven't received a response. Is this issue not being tracked?

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type
No fields configured for issues without a type.

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions