Security Advisories for github.com/docker/docker in go
High
26 days ago
Docker: Race condition in docker cp allows bind mount redirection to host path
go
github.com/moby/moby, github.com/moby/moby/v2, github.com/docker/docker
Moderate
26 days ago
Docker: Race condition in docker cp allows creation of arbitrary empty files on the host via symlink swap
go
github.com/moby/moby, github.com/moby/moby/v2, github.com/docker/docker
High
26 days ago
Docker: `PUT /containers/{id}/archive` executes container binary on the host
go
github.com/moby/moby, github.com/docker/docker, github.com/moby/moby/v2
Moderate
3 months ago
Moby has an Off-by-one error in its plugin privilege validation
go
github.com/moby/moby/v2, github.com/moby/moby, github.com/docker/docker
Low
11 months ago
Moby firewalld reload removes bridge network isolation
go
github.com/docker/docker
Moderate
11 months ago
Moby firewalld reload makes published container ports accessible from remote hosts
go
github.com/docker/docker
Moderate
about 2 years ago
Moby (Docker Engine) is vulnerable to Ambiguous OCI manifest parsing
go
github.com/docker/docker
Low
about 2 years ago
`docker cp` allows unexpected chmod of host files in Moby Docker Engine
go
github.com/docker/docker
Moderate
about 2 years ago
Moby (Docker Engine) started with non-empty inheritable Linux process capabilities
go
github.com/docker/docker, github.com/moby/moby
Moderate
about 2 years ago
Moby's external DNS requests from 'internal' networks could lead to data exfiltration
go
github.com/docker/docker
Moderate
over 2 years ago
/sys/devices/virtual/powercap accessible by default to containers
go
github.com/docker/docker
High
about 3 years ago
Docker Swarm encrypted overlay network may be unauthenticated
go
github.com/docker/docker
Moderate
about 3 years ago
Docker Swarm encrypted overlay network traffic may be unencrypted
go
github.com/docker/docker
Moderate
about 3 years ago
Docker Swarm encrypted overlay network with a single endpoint is unauthenticated
go
github.com/docker/docker
Low
over 3 years ago
Container build can leak any path on the host into the container
go
github.com/docker/docker
Moderate
over 3 years ago
Docker supplementary group permissions not set up properly, allowing attackers to bypass primary group restrictions
go
github.com/docker/docker
Moderate
over 4 years ago
Symlink Attack in Libcontainer and Docker Engine
go
github.com/docker/docker
Potential