Docker Docker
  • What is Docker?
  • Product
  • Get Docker
    • For Desktops
    • Mac
    • Windows
    • For Cloud Providers
    • AWS
    • Azure
    • For Servers
    • Windows Server
    • CentOS
    • Debian
    • Fedora
    • Oracle Linux
    • RHEL
    • SLES
    • Ubuntu
  • Docs
  • Community
  • Create Docker ID
  • Sign In
Docker Docker
  • Create Docker ID
  • Sign In
  • What is Docker?
  • Product
  • Get Docker
    • For Desktops
    • Mac
    • Windows
    • For Cloud Providers
    • AWS
    • Azure
    • For Servers
    • Windows Server
    • CentOS
    • Debian
    • Fedora
    • Oracle Linux
    • RHEL
    • SLES
    • Ubuntu
  • Docs
  • Community
  • Docker Legal Terms

    In this section you will find all of the relevant legal terms associated with Docker products and services. Please click the appropriate link to view the document.

DockerCon Europe 2017
  • Terms of Service
  • EUSA
  • CVE Database
  • Components & Licenses
  • Evaluation Agreement
  • Marks and Logos
  • Privacy Policy
  • Subscription Services
  • Trademark Guidelines
  • Services & Subscription Agreement

Docker CVE Database

This is a database of current known vulnerabilities and security exposures. To learn more about Docker Security Policy and Process, visit the Security Portal

CVE ID Description Date Patch
CVE-2016-8867 Incorrect application of ambient capabilities Oct 27, 2016 Engine 1.12.3
CVE-2014-8178 Attacker controlled layer IDs lead to local graph content poisoning Oct 12, 2015 Engine 1.8.3, 1.6.2-CS7
CVE-2014-8179 Manifest validation and parsing logic errors allow pull-by-digest validation bypass Oct 12, 2015 Engine 1.8.3, 1.6.2-CS7
CVE-2015-3629 Symlink traversal on container respawn allows local privilege escalation May 7, 2015 Engine 1.6.1
CVE-2015-3627 Insecure opening of file-descriptor 1 leading to privilege escalation May 7, 2015 Engine 1.6.1
CVE-2015-3630 Read/write proc paths allow host modification & information disclosure May 7, 2015 Engine 1.6.1
CVE-2015-3631 Volume mounts allow LSM profile escalation May 7, 2015 Engine 1.6.1

 

  • What is Docker
  • What is a Container
  • Use Cases
  • Customers
  • Partners
  • For Government
  • About Docker
  • Management
  • Press & News
  • Careers
  • Product
  • Pricing
  • Community Edition
  • Enterprise Edition
  • Docker Datacenter
  • Docker Cloud
  • Docker Store
  • Get Docker
  • Docker for Mac
  • Docker for Windows(PC)
  • Docker for AWS
  • Docker for Azure
  • Docker for Windows Server
  • Docker for the CentOS distribution
  • Docker for Debian
  • Docker for Fedora®
  • Docker for Oracle Linux
  • Docker for RHEL
  • Docker for SLES
  • Docker for Ubuntu
  • Documentation
  • Blog
  • RSS Feed
  • Training
  • Knowledge Base
  • Resources
  • Community
  • Open Source
  • Events
  • Forums
  • Docker Captains
  • Scholarships
  • Community News
  • Status
  • Security
  • Legal
  • Contact

Copyright © 2017 Docker Inc. All rights reserved.

  • Twitter
  • Youtube
  • Google
  • Github
  • Linkedin
  • Facebook
  • Reddit
  • Slideshare