Cloud Foundry Garden-runC, versions before 1.13.0, does not correctly enforce disc quotas for Docker image layers. A remote authenticated user may push an app with a malicious Docker image that will consume more space on a Diego cell than allocated in their quota, potentially causing a DoS against the cell.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cloudfoundry garden-runc |
||
cloudfoundry cf-deployment |