| id: GO-2022-0630 |
| modules: |
| - module: github.com/docker/docker |
| versions: |
| - fixed: 1.3.2 |
| vulnerable_at: 1.3.1 |
| summary: Arbitrary Code Execution in Docker in github.com/docker/docker |
| cves: |
| - CVE-2014-6407 |
| ghsas: |
| - GHSA-5qgp-p5jc-w2rm |
| references: |
| - advisory: https://github.com/advisories/GHSA-5qgp-p5jc-w2rm |
| - advisory: https://nvd.nist.gov/vuln/detail/CVE-2014-6407 |
| - fix: https://github.com/docker/docker/commit/3ac6394b8082d4700483d52fbfe54914be537d9e |
| - web: https://lists.fedoraproject.org/pipermail/package-announce/2014-December/145154.html |
| - web: https://lists.opensuse.org/opensuse-security-announce/2014-12/msg00009.html |
| - web: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-6407 |
| - web: https://www.openwall.com/lists/oss-security/2014/11/24/5 |
| source: |
| id: GHSA-5qgp-p5jc-w2rm |
| created: 2024-08-20T14:09:34.001335-04:00 |
| review_status: UNREVIEWED |
| unexcluded: NOT_IMPORTABLE |