Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2014-3110

Опубликовано: 30 дек. 2014
Источник: oracle-oval
Платформа: Oracle Linux 6
Платформа: Oracle Linux 7

Описание

ELSA-2014-3110: docker security update (IMPORTANT)

[1.3.3-1.0.1]

  • Rename requirement of docker-io-pkg-devel in %package devel as docker-pkg-devel
  • Restore SysV init scripts for Oracle Linux 6
  • Require Oracle Unbreakable Enterprise Kernel Release 3 or higher
  • Rename as docker.
  • Re-enable btrfs graphdriver support

[1.3.3-1]

Обновленные пакеты

Oracle Linux 6

Oracle Linux x86_64

docker

1.3.3-1.0.1.el6

docker-devel

1.3.3-1.0.1.el6

docker-pkg-devel

1.3.3-1.0.1.el6

Oracle Linux 7

Oracle Linux x86_64

docker

1.3.3-1.0.1.el7

docker-devel

1.3.3-1.0.1.el7

docker-pkg-devel

1.3.3-1.0.1.el7

Связанные уязвимости

ubuntu
около 11 лет назад

Docker before 1.3.3 does not properly validate image IDs, which allows remote attackers to conduct path traversal attacks and spoof repositories via a crafted image in a (1) "docker load" operation or (2) "registry communications."

redhat
около 11 лет назад

Docker before 1.3.3 does not properly validate image IDs, which allows remote attackers to conduct path traversal attacks and spoof repositories via a crafted image in a (1) "docker load" operation or (2) "registry communications."

nvd
около 11 лет назад

Docker before 1.3.3 does not properly validate image IDs, which allows remote attackers to conduct path traversal attacks and spoof repositories via a crafted image in a (1) "docker load" operation or (2) "registry communications."

msrc
больше 4 лет назад

Описание отсутствует

debian
около 11 лет назад

Docker before 1.3.3 does not properly validate image IDs, which allows ...