Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-36621

Опубликовано: 29 нояб. 2024
Источник: debian
EPSS Низкий

Описание

moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used to trigger concurrent builds that call the EnsureLayer function resulting in resource leaks/exhaustion.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
docker.iofixed26.1.4+dfsg1-9package
docker.iono-dsabookwormpackage
docker.iopostponedbullseyepackage

Примечания

  • https://github.com/moby/moby/commit/37545cc644344dcb576cba67eb7b6f51a463d31e (v26.0.0-rc2)

EPSS

Процентиль: 39%
0.00173
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
10 месяцев назад

moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used to trigger concurrent builds that call the EnsureLayer function resulting in resource leaks/exhaustion.

CVSS3: 5.3
redhat
10 месяцев назад

moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used to trigger concurrent builds that call the EnsureLayer function resulting in resource leaks/exhaustion.

CVSS3: 6.5
nvd
10 месяцев назад

moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used to trigger concurrent builds that call the EnsureLayer function resulting in resource leaks/exhaustion.

CVSS3: 6.5
msrc
9 месяцев назад

Описание отсутствует

CVSS3: 6.5
github
10 месяцев назад

Moby Race Condition vulnerability

EPSS

Процентиль: 39%
0.00173
Низкий