Lucene search

K
redhatRedHatRHSA-2019:0304
HistoryFeb 11, 2019 - 2:26 p.m.

(RHSA-2019:0304) Important: docker security update

2019-02-1114:26:20
access.redhat.com
182

0.004 Low

EPSS

Percentile

73.6%

Docker is an open-source engine that automates the deployment of any application as a lightweight, portable, self-sufficient container that runs virtually anywhere.

Security Fix(es):

  • A flaw was found in the way runc handled system file descriptors when running containers. A malicious container could use this flaw to overwrite contents of the runc binary and consequently run arbitrary commands on the container host system. (CVE-2019-5736)

Additional details about this flaw, including mitigation information, can be found in the vulnerability article linked from the Reference section.

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.