The Docker daemon managed by boot2docker 1.2 and earlier improperly enables unauthenticated TCP connections by default, which makes it easier for remote attackers to gain privileges or execute arbitrary code from children containers.
References
Configurations
History
21 Nov 2024, 02:11
Type | Values Removed | Values Added |
---|---|---|
References | () https://groups.google.com/forum/#%21msg/docker-announce/aQoVmQlcE0A/smPuBNYf8VwJ - |
07 Nov 2023, 02:20
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2018-02-06 16:29
Updated : 2024-11-21 02:11
NVD link : CVE-2014-5279
Mitre link : CVE-2014-5279
CVE.ORG link : CVE-2014-5279
JSON object : View
Products Affected
boot2docker
- boot2docker
CWE
CWE-284
Improper Access Control