Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-9356

Опубликовано: 02 дек. 2019
Источник: ubuntu
Приоритет: high
EPSS Низкий
CVSS2: 8.5
CVSS3: 8.6

Описание

Path traversal vulnerability in Docker before 1.3.3 allows remote attackers to write to arbitrary files and bypass a container protection mechanism via a full pathname in a symlink in an (1) image or (2) build in a Dockerfile.

РелизСтатусПримечание
devel

not-affected

1.3.3~dfsg1-2ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [1.6.2~dfsg1-1ubuntu4~14.04.1]]
esm-infra/xenial

not-affected

1.3.3~dfsg1-2ubuntu1
lucid

DNE

precise

DNE

precise/esm

DNE

trusty

not-affected

1.6.2~dfsg1-1ubuntu4~14.04.1
trusty/esm

DNE

trusty was not-affected [1.6.2~dfsg1-1ubuntu4~14.04.1]
upstream

released

1.3.3
utopic

ignored

end of life

Показывать по

EPSS

Процентиль: 78%
0.01209
Низкий

8.5 High

CVSS2

8.6 High

CVSS3

Связанные уязвимости

redhat
больше 10 лет назад

Path traversal vulnerability in Docker before 1.3.3 allows remote attackers to write to arbitrary files and bypass a container protection mechanism via a full pathname in a symlink in an (1) image or (2) build in a Dockerfile.

CVSS3: 8.6
nvd
больше 5 лет назад

Path traversal vulnerability in Docker before 1.3.3 allows remote attackers to write to arbitrary files and bypass a container protection mechanism via a full pathname in a symlink in an (1) image or (2) build in a Dockerfile.

CVSS3: 8.6
msrc
почти 4 года назад

Описание отсутствует

CVSS3: 8.6
debian
больше 5 лет назад

Path traversal vulnerability in Docker before 1.3.3 allows remote atta ...

CVSS3: 5.9
github
около 4 лет назад

Path Traversal in Docker

EPSS

Процентиль: 78%
0.01209
Низкий

8.5 High

CVSS2

8.6 High

CVSS3