Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-37708

Опубликовано: 31 янв. 2023
Источник: redhat
CVSS3: 6.8

Описание

A flaw was found in Docker, which is vulnerable to insecure permissions. This flaw allows unauthorized users outside the Docker container to access any files within the Docker container.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7dockerOut of support scope
Red Hat Satellite 6ansiblerole-foreman_scap_clientNot affected
Red Hat Satellite 6satellite-capsule:el8/ansiblerole-foreman_scap_clientNot affected
Red Hat Satellite 6satellite:el8/ansiblerole-foreman_scap_clientNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=2166238docker: vulnerable to Insecure Permissions

6.8 Medium

CVSS3

Связанные уязвимости

ubuntu
около 3 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

nvd
около 3 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

CVSS3: 6.8
github
около 3 лет назад

Docker version 20.10.15, build fd82621 is vulnerable to Insecure Permissions. Unauthorized users outside the Docker container can access any files within the Docker container.

6.8 Medium

CVSS3