Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4165
HistoryMay 03, 2017 - 8:56 a.m.

Directory Traversal

2017-05-0308:56:04
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.002 Low

EPSS

Percentile

52.6%

github.com/docker/docker is vulnerable to path traversal attacks. These attacks are possible due to a flaw in the processing of absolute symlinks. The flaw allows attackers to use malicious images and builds to write files to the host system and escape containerization, possibly leading to privilege escalation.