Docker Engine 1.12.2 enabled ambient capabilities with misconfigured capability policies. This allowed malicious images to bypass user permissions to access files within the container filesystem or mounted volumes.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Docker | Docker | 1.12.2 (including) | 1.12.2 (including) |
Red Hat Enterprise Linux 7 Extras | RedHat | docker-2:1.13.1-162.git64e9980.el7_8 | * |