Docker 1.3.0 through 1.3.1 allows remote attackers to modify the default run profile of image containers and possibly bypass the container by applying unspecified security options to an image.
CVSS Details
- CVSS 3.1 Base Score: 6.2
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade docker.io | Jul 30, 2024 | Dec 12, 2014 |
| Docker | — | Upgrade to Docker v1.3.2 | May 4, 2017 | Dec 12, 2014 |
| Oracle_linux | — | Upgrade dockerUpgrade docker-develUpgrade docker-pkg-devel | Oct 16, 2024 | Dec 12, 2014 |
| Suse | — | Upgrade docker-bash-completionUpgrade sle2dockerUpgrade dockerUpgrade ruby2.1-rubygem-sle2dockerUpgrade docker-fish-completion | Dec 18, 2015 | Dec 12, 2014 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub