Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 15

Количество 15

ubuntu логотип

CVE-2021-41092

почти 5 лет назад

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2021-41092

почти 5 лет назад

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2021-41092

почти 5 лет назад

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2021-41092

почти 5 лет назад

Docker CLI is the command line interface for the docker container runt ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-99pg-grm5-qq3v

около 2 лет назад

Docker CLI leaks private registry credentials to registry-1.docker.io

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2022-05502

почти 5 лет назад

Уязвимость интерфейса командной строки (CLI) средства автоматизации развёртывания и управления приложениями в средах с поддержкой контейнеризации Docker, позволяющая нарушителю получить произвольные учетные данные

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2022:0334-1

больше 4 лет назад

Security update for containerd, docker

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0334-1

больше 4 лет назад

Security update for containerd, docker

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0213-1

больше 4 лет назад

Security update for containerd, docker

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:3506-1

почти 5 лет назад

Security update for containerd, docker, runc

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1404-1

почти 5 лет назад

Security update for containerd, docker, runc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3506-1

почти 5 лет назад

Security update for containerd, docker, runc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3336-1

почти 5 лет назад

Security update for containerd, docker, runc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03545-1

11 месяцев назад

Security update for docker-stable

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03540-1

11 месяцев назад

Security update for docker-stable

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-41092

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 5.4
2%
Низкий
почти 5 лет назад
redhat логотип
CVE-2021-41092

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 7.5
2%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-41092

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 5.4
2%
Низкий
почти 5 лет назад
debian логотип
CVE-2021-41092

Docker CLI is the command line interface for the docker container runt ...

CVSS3: 5.4
2%
Низкий
почти 5 лет назад
github логотип
GHSA-99pg-grm5-qq3v

Docker CLI leaks private registry credentials to registry-1.docker.io

CVSS3: 5.4
2%
Низкий
около 2 лет назад
fstec логотип
BDU:2022-05502

Уязвимость интерфейса командной строки (CLI) средства автоматизации развёртывания и управления приложениями в средах с поддержкой контейнеризации Docker, позволяющая нарушителю получить произвольные учетные данные

CVSS3: 7.5
2%
Низкий
почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2022:0334-1

Security update for containerd, docker

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:0334-1

Security update for containerd, docker

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:0213-1

Security update for containerd, docker

больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:3506-1

Security update for containerd, docker, runc

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1404-1

Security update for containerd, docker, runc

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:3506-1

Security update for containerd, docker, runc

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:3336-1

Security update for containerd, docker, runc

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2025:03545-1

Security update for docker-stable

11 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:03540-1

Security update for docker-stable

11 месяцев назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.