Docker Engine 1.12.2 enabled ambient capabilities with misconfigured capability policies. This allowed malicious images to bypass user permissions to access files within the container filesystem or mounted volumes.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2016-10-28T15:00:00
Updated: 2024-08-06T02:35:02.197Z
Reserved: 2016-10-21T00:00:00
Link: CVE-2016-8867
Vulnrichment
No data.
NVD
Status : Modified
Published: 2016-10-28T15:59:14.047
Modified: 2017-07-28T01:29:07.813
Link: CVE-2016-8867
Redhat