Количество 9
Количество 9
CVE-2017-16539
The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.
CVE-2017-16539
The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.
CVE-2017-16539
The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP.
CVE-2017-16539
The DefaultLinuxSpec function in oci/defaults.go in Docker Moby throug ...
GHSA-vfjc-2qcw-j95j
Docker Moby /proc/scsi Path Exposure Allows Host Data Loss (SCSI MICDROP)
openSUSE-SU-2018:0406-1
Security update for docker, docker-runc, containerd, golang-github-docker-libnetwork
SUSE-SU-2018:0386-1
Version update for docker, docker-runc, containerd, golang-github-docker-libnetwork
SUSE-SU-2025:03545-1
Security update for docker-stable
SUSE-SU-2025:03540-1
Security update for docker-stable
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2017-16539 The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP. | CVSS3: 5.9 | 1% Низкий | больше 8 лет назад | |
CVE-2017-16539 The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP. | CVSS3: 7.5 | 1% Низкий | больше 8 лет назад | |
CVE-2017-16539 The DefaultLinuxSpec function in oci/defaults.go in Docker Moby through 17.03.2-ce does not block /proc/scsi pathnames, which allows attackers to trigger data loss (when certain older Linux kernels are used) by leveraging Docker container access to write a "scsi remove-single-device" line to /proc/scsi/scsi, aka SCSI MICDROP. | CVSS3: 5.9 | 1% Низкий | больше 8 лет назад | |
CVE-2017-16539 The DefaultLinuxSpec function in oci/defaults.go in Docker Moby throug ... | CVSS3: 5.9 | 1% Низкий | больше 8 лет назад | |
GHSA-vfjc-2qcw-j95j Docker Moby /proc/scsi Path Exposure Allows Host Data Loss (SCSI MICDROP) | CVSS3: 5.9 | 1% Низкий | больше 3 лет назад | |
openSUSE-SU-2018:0406-1 Security update for docker, docker-runc, containerd, golang-github-docker-libnetwork | около 8 лет назад | |||
SUSE-SU-2018:0386-1 Version update for docker, docker-runc, containerd, golang-github-docker-libnetwork | около 8 лет назад | |||
SUSE-SU-2025:03545-1 Security update for docker-stable | 4 месяца назад | |||
SUSE-SU-2025:03540-1 Security update for docker-stable | 4 месяца назад |
Уязвимостей на страницу