Image Layer Vulnerability in Docker Engine by Docker, Inc.
CVE-2014-8178

5.5MEDIUM

Key Information:

Vendor

Docker

Vendor
CVE Published:
17 December 2019

What is CVE-2014-8178?

The Docker Engine harbored a security issue where it did not utilize a globally unique identifier for storing image layers. This oversight permitted malicious actors to manipulate the image cache, potentially leading to the execution of crafted images through pull or push commands. This vulnerability emphasizes the need for improved layer management and security protocols within container technologies.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

CS Docker Engine before 1.6.2-CS7

Docker Engine before 1.8.3

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.