Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

fstec логотип

BDU:2024-03268

больше 2 лет назад

Уязвимость реализации протокола IPv6 программного средства для создания систем контейнерной изоляции Moby, позволяющая нарушителю получить конфиденциальную информацию

CVSS3: 4.7
EPSS: Низкий
redos логотип

ROS-20240503-09

больше 2 лет назад

Уязвимость docker-ce

CVSS3: 4.7
EPSS: Низкий
altlinux логотип

ALT-PU-2024-6958

больше 2 лет назад

ALT-PU-2024-6958: package `docker-engine` update to version 26.0.2-alt1

CVSS3: 6.5
EPSS: Низкий
altlinux логотип

ALT-PU-2024-11263

около 2 лет назад

ALT-PU-2024-11263: package `docker-engine` update to version 27.1.1-alt1

CVSS3: 9.9
EPSS: Низкий
ubuntu логотип

CVE-2024-32473

больше 2 лет назад

Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of container tooling or runtimes. In 26.0.0, IPv6 is not disabled on network interfaces, including those belonging to networks where `--ipv6=false`. An container with an `ipvlan` or `macvlan` interface will normally be configured to share an external network link with the host machine. Because of this direct access, (1) Containers may be able to communicate with other hosts on the local network over link-local IPv6 addresses, (2) if router advertisements are being broadcast over the local network, containers may get SLAAC-assigned addresses, and (3) the interface will be a member of IPv6 multicast groups. This means interfaces in IPv4-only networks present an unexpectedly and unnecessarily increased attack surface. The issue is patched in 26.0.2. To completely disable IPv6 in a container, use `--sysctl=net.ipv6.conf.all.disable_ipv6=1` in the `docker create` ...

CVSS3: 4.7
EPSS: Низкий
redhat логотип

CVE-2024-32473

больше 2 лет назад

Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of container tooling or runtimes. In 26.0.0, IPv6 is not disabled on network interfaces, including those belonging to networks where `--ipv6=false`. An container with an `ipvlan` or `macvlan` interface will normally be configured to share an external network link with the host machine. Because of this direct access, (1) Containers may be able to communicate with other hosts on the local network over link-local IPv6 addresses, (2) if router advertisements are being broadcast over the local network, containers may get SLAAC-assigned addresses, and (3) the interface will be a member of IPv6 multicast groups. This means interfaces in IPv4-only networks present an unexpectedly and unnecessarily increased attack surface. The issue is patched in 26.0.2. To completely disable IPv6 in a container, use `--sysctl=net.ipv6.conf.all.disable_ipv6=1` in the `docker create` ...

CVSS3: 4.7
EPSS: Низкий
nvd логотип

CVE-2024-32473

больше 2 лет назад

Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of container tooling or runtimes. In 26.0.0, IPv6 is not disabled on network interfaces, including those belonging to networks where `--ipv6=false`. An container with an `ipvlan` or `macvlan` interface will normally be configured to share an external network link with the host machine. Because of this direct access, (1) Containers may be able to communicate with other hosts on the local network over link-local IPv6 addresses, (2) if router advertisements are being broadcast over the local network, containers may get SLAAC-assigned addresses, and (3) the interface will be a member of IPv6 multicast groups. This means interfaces in IPv4-only networks present an unexpectedly and unnecessarily increased attack surface. The issue is patched in 26.0.2. To completely disable IPv6 in a container, use `--sysctl=net.ipv6.conf.all.disable_ipv6=1` in the `docker create` or

CVSS3: 4.7
EPSS: Низкий
debian логотип

CVE-2024-32473

больше 2 лет назад

Moby is an open source container framework that is a key component of ...

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-x84c-p2g9-rqv9

больше 2 лет назад

IPv6 enabled on IPv4-only network interfaces

CVSS3: 4.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-03268

Уязвимость реализации протокола IPv6 программного средства для создания систем контейнерной изоляции Moby, позволяющая нарушителю получить конфиденциальную информацию

CVSS3: 4.7
0%
Низкий
больше 2 лет назад
redos логотип
ROS-20240503-09

Уязвимость docker-ce

CVSS3: 4.7
0%
Низкий
больше 2 лет назад
altlinux логотип
ALT-PU-2024-6958

ALT-PU-2024-6958: package `docker-engine` update to version 26.0.2-alt1

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
altlinux логотип
ALT-PU-2024-11263

ALT-PU-2024-11263: package `docker-engine` update to version 27.1.1-alt1

CVSS3: 9.9
около 2 лет назад
ubuntu логотип
CVE-2024-32473

Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of container tooling or runtimes. In 26.0.0, IPv6 is not disabled on network interfaces, including those belonging to networks where `--ipv6=false`. An container with an `ipvlan` or `macvlan` interface will normally be configured to share an external network link with the host machine. Because of this direct access, (1) Containers may be able to communicate with other hosts on the local network over link-local IPv6 addresses, (2) if router advertisements are being broadcast over the local network, containers may get SLAAC-assigned addresses, and (3) the interface will be a member of IPv6 multicast groups. This means interfaces in IPv4-only networks present an unexpectedly and unnecessarily increased attack surface. The issue is patched in 26.0.2. To completely disable IPv6 in a container, use `--sysctl=net.ipv6.conf.all.disable_ipv6=1` in the `docker create` ...

CVSS3: 4.7
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2024-32473

Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of container tooling or runtimes. In 26.0.0, IPv6 is not disabled on network interfaces, including those belonging to networks where `--ipv6=false`. An container with an `ipvlan` or `macvlan` interface will normally be configured to share an external network link with the host machine. Because of this direct access, (1) Containers may be able to communicate with other hosts on the local network over link-local IPv6 addresses, (2) if router advertisements are being broadcast over the local network, containers may get SLAAC-assigned addresses, and (3) the interface will be a member of IPv6 multicast groups. This means interfaces in IPv4-only networks present an unexpectedly and unnecessarily increased attack surface. The issue is patched in 26.0.2. To completely disable IPv6 in a container, use `--sysctl=net.ipv6.conf.all.disable_ipv6=1` in the `docker create` ...

CVSS3: 4.7
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2024-32473

Moby is an open source container framework that is a key component of Docker Engine, Docker Desktop, and other distributions of container tooling or runtimes. In 26.0.0, IPv6 is not disabled on network interfaces, including those belonging to networks where `--ipv6=false`. An container with an `ipvlan` or `macvlan` interface will normally be configured to share an external network link with the host machine. Because of this direct access, (1) Containers may be able to communicate with other hosts on the local network over link-local IPv6 addresses, (2) if router advertisements are being broadcast over the local network, containers may get SLAAC-assigned addresses, and (3) the interface will be a member of IPv6 multicast groups. This means interfaces in IPv4-only networks present an unexpectedly and unnecessarily increased attack surface. The issue is patched in 26.0.2. To completely disable IPv6 in a container, use `--sysctl=net.ipv6.conf.all.disable_ipv6=1` in the `docker create` or

CVSS3: 4.7
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2024-32473

Moby is an open source container framework that is a key component of ...

CVSS3: 4.7
0%
Низкий
больше 2 лет назад
github логотип
GHSA-x84c-p2g9-rqv9

IPv6 enabled on IPv4-only network interfaces

CVSS3: 4.7
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу