vulnerability

Oracle Linux: CVE-2018-20699: ELSA-2019-4597: docker-engine security update (IMPORTANT)

Severity
5
CVSS
(AV:A/AC:L/Au:M/C:N/I:N/A:C)
Published
2018-10-04
Added
2019-04-02
Modified
2024-12-06

Description

Docker Engine before 18.09 allows attackers to cause a denial of service (dockerd memory consumption) via a large integer in a --cpuset-mems or --cpuset-cpus value, related to daemon/daemon_unix.go, pkg/parsers/parsers.go, and pkg/sysinfo/sysinfo.go.

Solution

oracle-linux-upgrade-docker-engine
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.