CVE List

CVE-2014-9356

Critical 8.6

Path traversal vulnerability in Docker before 1.3.3 allows remote attackers to write to arbitrary files and bypass a container protection mechanism via a full pathname in a symlink in an (1) image or (2) build in a Dockerfile.

Published December 2, 2019.

Affected software

Get alerts for Docker Docker

Reference links