Логотип exploitDog
bind:"CVE-2017-16539"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2017-16539"

Количество 9

Количество 9

ubuntu логотип

CVE-2017-16539

больше 8 лет назад

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2017-16539

больше 8 лет назад

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-16539

больше 8 лет назад

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2017-16539

больше 8 лет назад

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby throug ...

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-vfjc-2qcw-j95j

больше 3 лет назад

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:0406-1

около 8 лет назад

Security update for docker, docker-runc, containerd, golang-github-docker-libnetwork

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:0386-1

около 8 лет назад

Version update for docker, docker-runc, containerd, golang-github-docker-libnetwork

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03545-1

4 месяца назад

Security update for docker-stable

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03540-1

4 месяца назад

Security update for docker-stable

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2017-16539

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.

CVSS3: 5.9
1%
Низкий
больше 8 лет назад
redhat логотип
CVE-2017-16539

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.

CVSS3: 7.5
1%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-16539

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.

CVSS3: 5.9
1%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-16539

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby throug ...

CVSS3: 5.9
1%
Низкий
больше 8 лет назад
github логотип
GHSA-vfjc-2qcw-j95j

The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.

CVSS3: 5.9
1%
Низкий
больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2018:0406-1

Security update for docker, docker-runc, containerd, golang-github-docker-libnetwork

около 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:0386-1

Version update for docker, docker-runc, containerd, golang-github-docker-libnetwork

около 8 лет назад
suse-cvrf логотип
SUSE-SU-2025:03545-1

Security update for docker-stable

4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:03540-1

Security update for docker-stable

4 месяца назад

Уязвимостей на страницу