Docker is an open source project to build, ship and run any application as a lightweight container.
Security Fix(es):
moby v25.0.5 is affected by a Race Condition in builder/builder-next/adapters/snapshot/layer.go. The vulnerability could be used to trigger concurrent builds that call the EnsureLayer function resulting in resource leaks/exhaustion.(CVE-2024-36621)
moby v25.0.3 has a Race Condition vulnerability in the streamformatter package which can be used to trigger multiple concurrent write operations resulting in data corruption or application crashes.(CVE-2024-36623)
{ "severity": "High" }
{ "aarch64": [ "docker-engine-18.09.0-344.oe2203sp1.aarch64.rpm", "docker-engine-debuginfo-18.09.0-344.oe2203sp1.aarch64.rpm", "docker-engine-debugsource-18.09.0-344.oe2203sp1.aarch64.rpm" ], "x86_64": [ "docker-engine-18.09.0-344.oe2203sp1.x86_64.rpm", "docker-engine-debuginfo-18.09.0-344.oe2203sp1.x86_64.rpm", "docker-engine-debugsource-18.09.0-344.oe2203sp1.x86_64.rpm" ], "src": [ "docker-engine-18.09.0-344.oe2203sp1.src.rpm" ] }