Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-09250
HistoryFeb 03, 2022 - 12:00 a.m.

Docker log information leakage vulnerability

2022-02-0300:00:00
China National Vulnerability Database
www.cnvd.org.cn
2

0.0004 Low

EPSS

Percentile

12.6%

Docker is an open source application container engine from the U.S. company Docker. The product supports creating a container (lightweight virtual machine) and deploying and running applications on Linux systems, as well as automating the installation, deployment and upgrade of applications through configuration files. A security vulnerability exists in Docker versions 4.3.0 and 4.3.1, which stems from the possibility that the software could log sensitive information (access tokens or passwords) on a user’s machine during login. An attacker could gain access to sensitive system information through this vulnerability.

0.0004 Low

EPSS

Percentile

12.6%

Related for CNVD-2022-09250