GHSA-9p26-698r-w4hx, CVE-2024-23650
go/github.com/moby/buildkit
Improper Check for Unusual or Exceptional Conditions
BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. A malicious BuildKit client or frontend could craft a request that could lead to BuildKit daemon crashing with a panic. The issue has been fixed in v0.12.5. As a workaround, avoid using BuildKit frontends from untrusted sources.
All versions before 0.12.5
Upgrade to version 0.12.5 or above.
2024-02-01
source |