{"id":"CGA-7fc4-2mr8-25m3","modified":"2026-09-23T04:30:27.399027600Z","published":"2026-09-22T22:26:34Z","upstream":["CVE-2019-3887","GHSA-j2cm-6mgm-v7v4"],"references":[{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/IWPOIII2L73HV5PGXSGMRMKQIK47UIYE/"},{"type":"ADVISORY","url":"https://usn.ubuntu.com/3979-1/"},{"type":"ADVISORY","url":"https://usn.ubuntu.com/3980-1/"},{"type":"ADVISORY","url":"https://usn.ubuntu.com/3980-2/"},{"type":"ADVISORY","url":"http://www.securityfocus.com/bid/107850"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2019:2703"},{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2019:2741"},{"type":"FIX","url":"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3887"}],"affected":[{"package":{"name":"linux-server-7.2-bootc","ecosystem":"Chainguard","purl":"pkg:apk/chainguard/linux-server-7.2-bootc?arch=x86_64"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"ecosystem_specific":{"components":[{"latest_event_status":"detection","latest_event_timestamp":"2026-09-22T22:26:34Z","component_name":"linux-server-7.2-bootc","component_version":"7.2.3-r0","component_type":"apk","component_location":"/.PKGINFO","component_purl":"pkg:apk/linux-server-7.2-bootc@7.2.3-r0"}]},"database_specific":{"source":"https://advisories.cgr.dev/chainguard/v3/osv/CGA-7fc4-2mr8-25m3.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:H"}]}