CVE-2019-1020014: Double Free
Published Jul 29, 2019
·Updated
docker-credential-helpers before 0.6.3 has a double free in the List functions.
Affected Software
6 affected componentsFixes available
debian/golang-github-docker-docker-credential-helpers
0.6.3-10.6.4+ds1-1
Docker Credential Helpers<0.6.3
fedoraproject fedora=32
Ubuntu=16.04
Ubuntu=18.04
Ubuntu=19.04
Remediation
Event History
Jul 29, 2019
CVE Published
via MITRE·12:20 PM
Data Sourced
via MITRE·12:20 PM
DescriptionWeakness
Data Sourced
via NVD·01:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Feb 20, 2026
Data Sourced
via Ubuntu·09:54 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·09:55 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-1020014?
CVE-2019-1020014 is classified as a moderate severity vulnerability due to the potential for double free errors.
2
What versions are affected by CVE-2019-1020014?
CVE-2019-1020014 affects docker-credential-helpers versions prior to 0.6.3.
3
How do I fix CVE-2019-1020014?
To fix CVE-2019-1020014, upgrade docker-credential-helpers to version 0.6.3 or later.
4
Which operating systems are impacted by CVE-2019-1020014?
CVE-2019-1020014 impacts multiple operating systems including specific versions of Debian, Fedora, and Ubuntu.
5
What is the nature of the vulnerability described in CVE-2019-1020014?
CVE-2019-1020014 involves a double free vulnerability in the List functions of the affected software.