Ubuntu Security Update USN-5103-1: docker.io vulnerability

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,945
Reaction score
80
Credits
-1,257
Lei Wang and Ruizhi Xiao discovered that the Moby Docker engine in Docker incorrectly allowed the docker cp command to make permissions changes in the host filesystem in some situations. A local attacker could possibly use to this to expose sensitive information or gain administrative privileges.

Continue reading...
 


Follow Linux.org

Members online


Top