Advisories ยป MGASA-2020-0406

Updated docker packages fix a security vulnerability

Publication date: 09 Nov 2020
Modification date: 09 Nov 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-15157

Description

It was discovered that Docker could be made to expose sensitive information
when processing URLs in container image manifests. A remote attacker could use
this to trick the user and obtain the user's registry credentials
(CVE-2020-15157).
                

References

SRPMS

7/core