Insecure session management In github.com/docker/docker
Description
Arbitrary File Write in Libcontainer Libcontainer 1.6.0, as used in Docker Engine, allows local users to escape containerization ("mount namespace breakout") and write to arbitrary file on the host system via a symlink attack in an image when respawning a container.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
go | 1.6.1 | ||
debian 13 | 1.6.1+dfsg1-1 | ||
debian 11 | 1.6.1+dfsg1-1 | ||
debian 12 | 1.6.1+dfsg1-1 | ||
debian 14 | 1.6.1+dfsg1-1 |
Aliases
1. 2. 3. 4. 5. 6.
References
1. 2. 3. 4. 5. 6. 7. 8.