CVE-2020-29575: Critical severity docker elixir alpine docker image vulnerability
The official elixir Docker images before 1.8.0-alpine (Alpine specific) contain a blank password for a root user. Systems using the elixir Linux Docker container deployed by affected versions of the Docker image may allow a remote attacker to achieve root access with a blank password.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-29575?
CVE-2020-29575 is considered a high severity vulnerability due to the risk of remote root access.
How do I fix CVE-2020-29575?
To fix CVE-2020-29575, update the Elixir Docker image to version 1.8.0-alpine or later.
Which versions are affected by CVE-2020-29575?
CVE-2020-29575 affects all official Elixir Docker images before version 1.8.0-alpine.
What are the implications of CVE-2020-29575?
The implications of CVE-2020-29575 include unauthorized root access, leading to potential system compromise.
How can I verify if my system is vulnerable to CVE-2020-29575?
You can verify if your system is vulnerable to CVE-2020-29575 by checking the version of the Elixir Docker image in use.