QID 997022
Date Published: 2024-02-01
QID 997022: GO (Go) Security Update for github.com/moby/moby (GHSA-6hwg-w5jg-9c6x)
util/binfmt_misc/check.go in Builder in Docker Engine before 19.03.9 calls os.OpenFile with a potentially unsafe qemu-check temporary pathname, constructed with an empty first argument in an ioutil.TempDir call.
Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.
Solution
Refer to Github security advisory GHSA-6hwg-w5jg-9c6x for updates and patch information.
Vendor References
- GHSA-6hwg-w5jg-9c6x -
github.com/advisories/GHSA-6hwg-w5jg-9c6x
CVEs related to QID 997022
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-6hwg-w5jg-9c6x | github.com/moby/moby |
|