Описание
A flaw was found in Docker, which is vulnerable to insecure permissions. This flaw allows unauthorized users outside the Docker container to access any files within the Docker container.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 7 | docker | Out of support scope | ||
| Red Hat Satellite 6 | ansiblerole-foreman_scap_client | Not affected | ||
| Red Hat Satellite 6 | satellite-capsule:el8/ansiblerole-foreman_scap_client | Not affected | ||
| Red Hat Satellite 6 | satellite:el8/ansiblerole-foreman_scap_client | Not affected |
Показывать по
Дополнительная информация
Статус:
6.8 Medium
CVSS3
Связанные уязвимости
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
Docker version 20.10.15, build fd82621 is vulnerable to Insecure Permissions. Unauthorized users outside the Docker container can access any files within the Docker container.
6.8 Medium
CVSS3