Docker CVE-2014-6407 Local Privilege Escalation Vulnerability
BID:71315
Info
Docker CVE-2014-6407 Local Privilege Escalation Vulnerability
| Bugtraq ID: | 71315 |
| Class: | Design Error |
| CVE: |
CVE-2014-6407 |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 24 2014 12:00AM |
| Updated: | May 07 2015 05:18PM |
| Credit: | Tõnis Tiigi and Florian Weimer of Red Hat Product Security |
| Vulnerable: |
S.u.S.E. openSUSE 13.2 Oracle Enterprise Linux 7 Docker Docker 1.3.1 Docker Docker 1.3.0 |
| Not Vulnerable: |
Docker Docker 1.3.2 |
Discussion
Docker CVE-2014-6407 Local Privilege Escalation Vulnerability
Docker is prone to a local privilege-escalation vulnerability.
A local attacker can exploit this issue to gain elevated privileges.
Docker is prone to a local privilege-escalation vulnerability.
A local attacker can exploit this issue to gain elevated privileges.
Exploit / POC
Docker CVE-2014-6407 Local Privilege Escalation Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Docker CVE-2014-6407 Local Privilege Escalation Vulnerability
References:
References:
- CVE-2014-6407 docker: symbolic and hardlink issues leading to privilege escalati (Red Hat Bugzilla)
- Docker - Homepage (Docker)