In Docker 19.03.x prior to 19.03.1 linked against the GNU C Library (aka glibc), code injection can occur when the nsswitch facility dynamically loads a library inside a chroot that contains the contents of the container.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
docker docker |
||
debian debian linux 10.0 |
||
opensuse leap 15.0 |
||
opensuse leap 15.1 |