Source: docker.io
X-Debbugs-CC: t...@security.debian.org
Severity: important
Tags: security

Hi,

The following vulnerability was published for docker.io.

CVE-2022-37708[0]:
| Docker version 20.10.15, build fd82621 is vulnerable to Insecure
| Permissions. Unauthorized users outside the Docker container can
| access any files within the Docker container.

The only reference here seems to be
upstream: https://github.com/thekevinday/docker_lightman_exploit

Not sure if this was reported upstream

If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.

For further information see:

[0] https://security-tracker.debian.org/tracker/CVE-2022-37708
    https://www.cve.org/CVERecord?id=CVE-2022-37708

Please adjust the affected versions in the BTS as needed.

Reply via email to