Логотип exploitDog
bind:CVE-2021-41092
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-41092

Количество 15

Количество 15

ubuntu логотип

CVE-2021-41092

больше 4 лет назад

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2021-41092

больше 4 лет назад

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2021-41092

больше 4 лет назад

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2021-41092

больше 4 лет назад

Docker CLI is the command line interface for the docker container runt ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-99pg-grm5-qq3v

больше 1 года назад

Docker CLI leaks private registry credentials to registry-1.docker.io

CVSS3: 5.4
EPSS: Низкий
fstec логотип

BDU:2022-05502

больше 4 лет назад

Уязвимость интерфейса командной строки (CLI) средства автоматизации развёртывания и управления приложениями в средах с поддержкой контейнеризации Docker, позволяющая нарушителю получить произвольные учетные данные

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2022:0334-1

около 4 лет назад

Security update for containerd, docker

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0334-1

около 4 лет назад

Security update for containerd, docker

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:0213-1

около 4 лет назад

Security update for containerd, docker

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:3506-1

больше 4 лет назад

Security update for containerd, docker, runc

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1404-1

больше 4 лет назад

Security update for containerd, docker, runc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3506-1

больше 4 лет назад

Security update for containerd, docker, runc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3336-1

больше 4 лет назад

Security update for containerd, docker, runc

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03545-1

4 месяца назад

Security update for docker-stable

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:03540-1

4 месяца назад

Security update for docker-stable

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-41092

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 5.4
0%
Низкий
больше 4 лет назад
redhat логотип
CVE-2021-41092

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 7.5
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2021-41092

Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.

CVSS3: 5.4
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-41092

Docker CLI is the command line interface for the docker container runt ...

CVSS3: 5.4
0%
Низкий
больше 4 лет назад
github логотип
GHSA-99pg-grm5-qq3v

Docker CLI leaks private registry credentials to registry-1.docker.io

CVSS3: 5.4
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2022-05502

Уязвимость интерфейса командной строки (CLI) средства автоматизации развёртывания и управления приложениями в средах с поддержкой контейнеризации Docker, позволяющая нарушителю получить произвольные учетные данные

CVSS3: 7.5
0%
Низкий
больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2022:0334-1

Security update for containerd, docker

около 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:0334-1

Security update for containerd, docker

около 4 лет назад
suse-cvrf логотип
SUSE-SU-2022:0213-1

Security update for containerd, docker

около 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:3506-1

Security update for containerd, docker, runc

больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1404-1

Security update for containerd, docker, runc

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2021:3506-1

Security update for containerd, docker, runc

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2021:3336-1

Security update for containerd, docker, runc

больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2025:03545-1

Security update for docker-stable

4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:03540-1

Security update for docker-stable

4 месяца назад

Уязвимостей на страницу