Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Docker Engine 1.12.2 enabled ambient capabilities with misconfigured capability policies. This allowed malicious images to bypass user permissions to access files within the container filesystem or mounted volumes.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Docker Engine 安全漏洞
Vulnerability Description
Docker Engine是美国Docker公司的一套轻量级的运行环境和包管理工具。 Docker Engine 1.12.2版本中存在安全漏洞,该漏洞源于启用的环境条件配置了错误的条件策略。攻击者可借助恶意的图像利用该漏洞绕过用户许可,访问文件系统容器或挂载磁盘中的文件。
CVSS Information
N/A
Vulnerability Type
N/A