Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Soh0Ro0To

#26747de 53,633
9.5CVSS total
Vulnerabilidades · 2
Média
2
PT-2017-9227
5.5
2017-01-27
Docker · Docker2Aci · CVE-2016-7569
**Name of the Vulnerable Software and Affected Versions** docker2aci versions prior to 0.13.0 **Description** The issue allows remote attackers to write to arbitrary files via a .. (dot dot) in the embedded layer data in an image. This is due to a directory traversal vulnerability. **Recommendations** For versions prior to 0.13.0, update to version 0.13.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the embedded layer data in images to minimize the risk of exploitation.
PT-2016-7508
4.0
2016-10-28
Docker · Docker2Aci · CVE-2016-8579
**Name of the Vulnerable Software and Affected Versions** docker2aci versions 0.12.3 and earlier **Description** The issue is related to an infinite loop that occurs when handling local images with a cyclic dependency chain, potentially leading to a Denial of Service. **Recommendations** For docker2aci versions 0.12.3 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.