CVE-2021-41092
published 2021-10-04CVE-2021-41092: Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login…
PriorityP343high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
1.54%
71.9th percentile
Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | docker.io | < docker.io 20.10.10+dfsg1-1 (bookworm) | docker.io 20.10.10+dfsg1-1 (bookworm) |
| docker | cli | < 20.10.9 | 20.10.9 |
| docker | command_line_interface | < 20.10.9 | 20.10.9 |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| github.com | docker_cli | >= 0 < 20.10.9 | 20.10.9 |
| github.com | docker_cli | >= 0 < 20.10.9+incompatible | 20.10.9+incompatible |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv7.5HIGH
vendor_debian5.4MEDIUM
vendor_redhat5.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Docker CLI leaks private registry credentials to registry-1.docker.io in github.com/docker/cli
osv·2024-07-01
CVE-2021-41092 Docker CLI leaks private registry credentials to registry-1.docker.io in github.com/docker/cli
Docker CLI leaks private registry credentials to registry-1.docker.io in github.com/docker/cli
Docker CLI leaks private registry credentials to registry-1.docker.io in github.com/docker/cli
GHSA
Docker CLI leaks private registry credentials to registry-1.docker.io
ghsa·2024-06-10
CVE-2021-41092 [MEDIUM] CWE-200 Docker CLI leaks private registry credentials to registry-1.docker.io
Docker CLI leaks private registry credentials to registry-1.docker.io
## Impact
A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry.
## Patches
This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible.
## Workarounds
Ensure that any configured `credsStore` or `credHelpers` entries in the configuration file reference an installed credential helper that is executable and on the `PATH`.
## For more information
If you have any questions or
OSV
Docker CLI leaks private registry credentials to registry-1.docker.io
osv·2024-06-10
CVE-2021-41092 [MEDIUM] Docker CLI leaks private registry credentials to registry-1.docker.io
Docker CLI leaks private registry credentials to registry-1.docker.io
## Impact
A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry.
## Patches
This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible.
## Workarounds
Ensure that any configured `credsStore` or `credHelpers` entries in the configuration file reference an installed credential helper that is executable and on the `PATH`.
## For more information
If you have any questions or
OSV
CVE-2021-41092: Docker CLI is the command line interface for the docker container runtime
osv·2021-10-04·CVSS 7.5
CVE-2021-41092 [HIGH] CVE-2021-41092: Docker CLI is the command line interface for the docker container runtime
Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.
CISA ICS
Siemens SCALANCE LPE9403 Third-Party Vulnerabilities
cisa_ics·2022-06-16·CVSS 9.8
[CRITICAL] Siemens SCALANCE LPE9403 Third-Party Vulnerabilities
## Archived Content In an effort to keep CISA.gov current, the archive contains outdated information that may not reflect current policy or programs.
ICS Advisory
##
Siemens SCALANCE LPE9403 Third-Party Vulnerabilities
Last RevisedJune 16, 2022
Alert CodeICSA-22-167-09
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely, low attack complexity
- Vendor: Siemens
- Equipment: SCALANCE LPE9403
- Vulnerabilities: Multiple
## 2. RISK EVALUATION
Successful exploitation of these vulnerabilities could cause crashes and unrestricted file access, impacting the product’s confidentiality, integrity, and availability.
## 3. TECHNICAL DETAILS
## 3.1 AFFECTED PRODUCTS
The following versions of SCALANCE LPE9403 (Local Processing
Ubuntu
Docker vulnerability
vendor_ubuntu·2021-11-09
CVE-2021-41092 Docker vulnerability
Title: Docker vulnerability
Summary: Docker could be made to expose sensitive information over the
network.
An information disclosure issue was discovered in the command line interface
of Docker. A misconfigured credential store could result in supplied
credentials being leaked to the public registry, when using the docker login
command with a private registry.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
docker: cli leaks private registry credentials to registry-1.docker.io
vendor_redhat·2021-10-04·CVSS 5.4
CVE-2021-41092 [MEDIUM] CWE-200 docker: cli leaks private registry credentials to registry-1.docker.io
docker: cli leaks private registry credentials to registry-1.docker.io
Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.
Debian
CVE-2021-41092: docker.io - Docker CLI is the command line interface for the docker container runtime. A bug...
vendor_debian·2021·CVSS 5.4
CVE-2021-41092 [MEDIUM] CVE-2021-41092: docker.io - Docker CLI is the command line interface for the docker container runtime. A bug...
Docker CLI is the command line interface for the docker container runtime. A bug was found in the Docker CLI where running `docker login my-private-registry.example.com` with a misconfigured configuration file (typically `~/.docker/config.json`) listing a `credsStore` or `credHelpers` that could not be executed would result in any provided credentials being sent to `registry-1.docker.io` rather than the intended private registry. This bug has been fixed in Docker CLI 20.10.9. Users should update to this version as soon as possible. For users unable to update ensure that any configured credsStore or credHelpers entries in the configuration file reference an installed credential helper that is executable and on the PATH.
Scope: local
bookworm: resolved (fixed in 20.10.10+dfsg1-1)
bullseye: r
No detection rules found.
No public exploits indexed.
https://cert-portal.siemens.com/productcert/pdf/ssa-222547.pdfhttps://github.com/docker/cli/commit/893e52cf4ba4b048d72e99748e0f86b2767c6c6bhttps://github.com/docker/cli/security/advisories/GHSA-99pg-grm5-qq3vhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/B5Q6G6I4W5COQE25QMC7FJY3I3PAYFBB/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZNFADTCHHYWVM6W4NJ6CB4FNFM2VMBIB/https://cert-portal.siemens.com/productcert/pdf/ssa-222547.pdfhttps://github.com/docker/cli/commit/893e52cf4ba4b048d72e99748e0f86b2767c6c6bhttps://github.com/docker/cli/security/advisories/GHSA-99pg-grm5-qq3vhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/B5Q6G6I4W5COQE25QMC7FJY3I3PAYFBB/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZNFADTCHHYWVM6W4NJ6CB4FNFM2VMBIB/
2021-10-04
Published