Updated docker packages fix security vulnerability
Publication date: 12 Sep 2019Modification date: 12 Sep 2019
Type: security
Affected Mageia releases : 6 , 7
CVE: CVE-2019-1020014
Description
Updated docker packages fix security vulnerability: Jasiel Spelman discovered that a double free existed in the docker-credential-helpers bundled in Docker. A local attacker could use this to cause a denial of service (crash) or possibly execute arbitrary code (CVE-2019-1020014).
References
SRPMS
6/core
- docker-18.06.3-1.2.mga6
7/core
- docker-18.09.8-1.mga7