Search CVE reports
11 – 20 of 62 results
Some fixes available 6 of 13
BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. Two malicious build steps running in parallel sharing the same cache mounts with subpaths could cause a race...
2 affected packages
docker.io, docker.io-app
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
docker.io | Fixed | Fixed | Fixed | Fixed |
docker.io-app | Fixed | Fixed | Vulnerable | Not in release |
Some fixes available 2 of 9
BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. A malicious BuildKit client or frontend could craft a request that could lead to BuildKit daemon crashing with...
2 affected packages
docker.io, docker.io-app
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
docker.io | Not affected | Not affected | Not affected | Not affected |
docker.io-app | Fixed | Fixed | Vulnerable | Not in release |
Some fixes available 3 of 6
Moby) is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and various other downstream projects/products. The Moby daemon component (`dockerd`), which is...
2 affected packages
docker.io, docker.io-app
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
docker.io | Not affected | Fixed | Fixed | Fixed |
docker.io-app | Not affected | Vulnerable | Vulnerable | — |
Some fixes available 3 of 6
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and various other downstream projects/products. The Moby daemon component (`dockerd`), which is...
2 affected packages
docker.io, docker.io-app
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
docker.io | Not affected | Fixed | Fixed | Fixed |
docker.io-app | Not affected | Vulnerable | Vulnerable | — |
Some fixes available 3 of 6
Moby is an open source container framework developed by Docker Inc. that is distributed as Docker, Mirantis Container Runtime, and various other downstream projects/products. The Moby daemon component (`dockerd`), which is...
2 affected packages
docker.io, docker.io-app
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
docker.io | Not affected | Fixed | Fixed | Fixed |
docker.io-app | Not affected | Vulnerable | Vulnerable | — |
BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. In affected versions when the user sends a build request that contains a Git URL that contains credentials and...
2 affected packages
docker.io, docker.io-app
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
docker.io | Not affected | Not affected | Not affected | Not affected |
docker.io-app | Not affected | Not affected | Not in release | Not in release |
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.
1 affected package
docker.io
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
docker.io | — | Not affected | Not affected | Not affected |
Some fixes available 3 of 5
Moby is an open-source project created by Docker to enable software containerization. A bug was found in Moby (Docker Engine) where supplementary groups are not set up properly. If an attacker has direct access to a container and...
1 affected package
docker.io
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
docker.io | Not affected | Fixed | Fixed | Fixed |
Some fixes available 10 of 19
The OCI Distribution Spec project defines an API protocol to facilitate and standardize the distribution of content. In the OCI Distribution Specification version 1.0.0 and prior, the Content-Type header alone was used to...
3 affected packages
containerd, docker-registry, docker.io
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
containerd | Fixed | Fixed | Fixed | Fixed |
docker-registry | Not affected | Not affected | Not affected | Not affected |
docker.io | Not affected | Not affected | Not affected | Vulnerable |
Some fixes available 11 of 12
Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically...
1 affected package
docker.io
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
docker.io | Fixed | Fixed | Fixed | Fixed |