A vulnerability in Clair allows overwriting an arbitrary file anywhere in the filesystem, when scanning a malicious Docker layer. In most if not all instances this could lead to remote code execution on the Clair scanner instance.
This issue has been addressed in the following products: Red Hat Quay 3 Via RHSA-2021:3665 https://access.redhat.com/errata/RHSA-2021:3665
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2021-3762
Upstream PRs: https://github.com/quay/claircore/pull/478 https://github.com/quay/clair/pull/1379 https://github.com/quay/clair/pull/1380