Docker Engine vulnerabilities
2 known vulnerabilities affecting docker/engine.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2020-13401MEDIUMCVSS 6.0fixed in 19.03.112020-06-02
CVE-2020-13401 [MEDIUM] CWE-20 CVE-2020-13401: An issue was discovered in Docker Engine before 19.03.11. An attacker in a container, with the CAP_N
An issue was discovered in Docker Engine before 19.03.11. An attacker in a container, with the CAP_NET_RAW capability, can craft IPv6 router advertisements, and consequently spoof external IPv6 hosts, obtain sensitive information, or cause a denial of service.
nvd
CVE-2018-20699MEDIUMCVSS 4.9fixed in 18.092019-01-12
CVE-2018-20699 [MEDIUM] CWE-400 CVE-2018-20699: Docker Engine before 18.09 allows attackers to cause a denial of service (dockerd memory consumption
Docker Engine before 18.09 allows attackers to cause a denial of service (dockerd memory consumption) via a large integer in a --cpuset-mems or --cpuset-cpus value, related to daemon/daemon_unix.go, pkg/parsers/parsers.go, and pkg/sysinfo/sysinfo.go.
nvd