GHSA-6wvf-f2vw-3425
HIGHCVE-2024-3727A flaw was found in the github.com/containers/image library. This flaw allows attackers to trigger unexpected authenticated registry accesses on behalf of a victim user, causing resource exhaustion, local path traversal, and other attacks.
- Affected
- >=0, <5.29.3, >=5.30.0, <5.30.1
- Fixed in
- 5.29.3
- Weakness
- CWE-354
- Published
- 2024-05-14
- Source
- github