[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244411

 
 

909

 
 

193363

 
 

277

Paid content will be excluded from the download.


Download | Alert*
OVAL

ELSA-2016-3568 -- Oracle docker-engine_docker-engine-selinux

ID: oval:org.secpod.oval:def:1501478Date: (C)2016-05-26   (M)2022-09-23
Class: PATCHFamily: unix




It was found that Docker would launch containers under the specified UID instead of a username. An attacker able to launch a container could use this flaw to escalate their privileges to root within the launched container.

Platform:
Oracle Linux 7
Product:
docker-engine
docker-engine-selinux
Reference:
ELSA-2016-3568
CVE-2016-3697
CVE    1
CVE-2016-3697
CPE    3
cpe:/a:docker:docker-engine-selinux
cpe:/o:oracle:linux:7
cpe:/a:docker:docker-engine

© SecPod Technologies