CVE-2015-3631

MEDIUM5.1EPSS 0.14%

Arbitrary File Override in Docker Engine in github.com/docker/docker

Published: 2/15/2022Modified: 4/28/2026

Description

Docker Engine before 1.6.1 allows local users to set arbitrary Linux Security Modules (LSM) and docker_t policies via an image that allows volumes to override files in /proc.

Affected packages (3)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.1CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L

References (11)