Known vulnerabilities in docker.io (Ubuntu package)

Software CPE: cpe:2.3:o:canonical:dockerio_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Total vulnerabilities: 13
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.4

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting docker.io (Ubuntu package) docker.io (Ubuntu package) is affected by 13 known vulnerabilities: 9 medium, 4 low Critical High Medium Low

Vulnerabilities (13)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU101384 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-36623
CWE-362 Low
No
No
Ubuntu Pro 10.12.2024 SB2024121031
SB2024121041
SB2024121042
and 8 more
#VU101383 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-36621
CWE-362 Low
No
No
Ubuntu Pro 10.12.2024 SB2024121030
SB2024121039
SB2024121040
and 9 more
#VU94762 - Incorrect Authorization
CVE-2024-41110
CWE-863 Medium
No
No
Ubuntu Pro, 26.1.3-0ubuntu1.1 26.07.2024 SB2024072641
SB2024080330
SB2024080739
and 39 more
#VU87658 - Incorrect Resource Transfer Between Spheres
CVE-2024-29018
CWE-669 Medium
No
No
Ubuntu Pro, 26.1.3-0ubuntu1.1 20.03.2024 SB2024032036
SB2024041284
SB2024042466
and 24 more
#VU86037 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2024-23652
CWE-22 Medium
No
No
Ubuntu Pro 02.02.2024 SB2024020229
SB2024020743
SB2024022237
and 20 more
#VU86035 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-23651
CWE-362 Medium
No
No
Ubuntu Pro 02.02.2024 SB2024020229
SB2024020743
SB2024022237
and 20 more
#VU74469 - Unprotected Alternate Channel
CVE-2023-28842
CWE-420 Medium
No
No
Ubuntu Pro 05.04.2023 SB2023040505
SB2023062140
SB2023080920
and 19 more
#VU74468 - Unprotected Alternate Channel
CVE-2023-28840
CWE-420 Medium
No
No
Ubuntu Pro 05.04.2023 SB2023040505
SB2023062140
SB2023080920
and 20 more
#VU74467 - Missing Encryption of Sensitive Data
CVE-2023-28841
CWE-311 Medium
No
No
Ubuntu Pro 05.04.2023 SB2023040505
SB2023062140
SB2023080920
and 18 more
#VU64417 - Exposure of sensitive information to an unauthorized actor
CVE-2021-41092
CWE-200 Medium
No
No
20.10.7-0ubuntu5.1, 20.10.7-0ubuntu5~18.04.3, 20.10.7-0ubuntu5~20.04.2, 20.10.7-0ubuntu5~21.04.2 15.06.2022 SB2021100420
SB2022061528
SB2021101264
and 13 more
#VU64415 - Improper preservation of permissions
CVE-2021-41089
CWE-281 Low
No
No
20.10.7-0ubuntu1~18.04.2, 20.10.7-0ubuntu1~20.04.2, 20.10.7-0ubuntu1~21.04.2 15.06.2022 SB2021100419
SB2022061528
SB2021101264
and 14 more
#VU48721 - Insufficiently Protected Credentials
CVE-2020-15157
CWE-522 Medium
No
No
18.09.7-0ubuntu1~16.04.6, 19.03.6-0ubuntu1~18.04.2, 19.03.8-0ubuntu1.20.04.1 16.10.2020 SB2020101613
SB2020112014
SB2021022805
and 5 more
#VU19934 - Double Free
CVE-2019-1020014
CWE-415 Low
No
No
18.09.7-0ubuntu1~16.04.5, 18.09.7-0ubuntu1~18.04.4, 18.09.7-0ubuntu1~19.04.5 05.08.2019 SB2019080502
SB2019081906
SB2019081908
and 2 more