Rapid7 Vulnerability & Exploit Database

Oracle Linux: ELSA-2019-4756: docker-engine security update

Free InsightVM Trial No Credit Card Necessary
Watch Demo See how it all works
Back to Search

Oracle Linux: ELSA-2019-4756: docker-engine security update

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
08/19/2019
Created
03/05/2020
Added
03/02/2020
Modified
03/02/2020

Description

[ 18.03.1.ol-0.0.15] - cherry-picked fix for CVE-2018-15664 from upstream [18.03.1.ol-0.0.14] - rebuild [18.03.1.ol-0.0.13] - update for CVE-2018-20699 [18.03.1.ol-0.0.12] - correct the version string of containerd [18.03.1.ol-0.0.11] - update runc for CVE-2019-5736 [18.03.1.ol-0.0.10] - update Go to version 1.10.8 [18.03.1.ol-0.0.9] - correct changelog [18.03.1.ol-0.0.8] - fix [orabug 28452214] and [orabug 28461404] [18.03.1.ol-0.0.6] - obsolete/provide the docker package [orabug 28216396] - Fix docker plugin reference resolution [orabug 28376247] [18.03.1.ol-1.0.4] - Fixed issue where RPM overwrites config files [17.12.0.ol-1.0.1] - Update docker-engine package for upstream 17.12.0 [17.09.1.ol-1.0.2] - Update docker-engine package for upstream 17.09.1 [17.06.2.ol-1.0.1] - Update docker-engine package for upstream 17.06.2 [orabug 26673768] - Migrate to new 'ol'-based versioning - add docker-storage-config utility [17.03.1-ce-3.0.1] - Update docker-engine package for upstream 17.03.1 - Enable configuration of Docker daemon via sysconfig [orabug 21804877] - Require UEK4 for docker 1.9 [orabug 22235639 22235645] - Add docker.conf for prelink [orabug 25147708] - Update oracle linux selinux policy to match upstream [orabug 25653794] - Use dockerd instead of docker daemon as it is deprecated [orabug 25653794]

Solution(s)

  • oracle-linux-upgrade-docker-engine

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;