Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Docker before 1.3.2 allows remote attackers to write to arbitrary files and execute arbitrary code via a (1) symlink or (2) hard link attack in an image archive in a (a) pull or (b) load operation.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Docker 权限许可和访问控制漏洞
Vulnerability Description
Docker是美国Docker公司的一款开源的应用容器引擎,它支持在Linux系统上创建一个容器(轻量级虚拟机)并部署和运行应用程序,以及通过配置文件实现应用程序的自动化安装、部署和升级。 Docker 1.3.2之前版本中存在安全漏洞。远程攻击者可通过在pull或load操作的图像归档中实施符号链接攻击或硬链接攻击利用该漏洞写入任意文件或执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A