AVG-968

Package docker
Status Fixed
Severity High
Type privilege escalation
Affected 1:18.09.6-1
Fixed 1:18.09.7-1
Current 1:19.03.1-2 [community]
Ticket None
Created Wed May 29 15:11:20 2019
Issue Severity Remote Type Description
CVE-2018-15664 High No Privilege escalation
A race condition with symbolic links has been found in Docker, allowing read-write access to the host and guest file-systems.
References
https://seclists.org/oss-sec/2019/q2/131
https://bugzilla.suse.com/show_bug.cgi?id=1096726