Vulnerability Intelligence Report
CVE-2018-15514
HandleRequestAsync in Docker for Windows before 18.06.0-ce-rc3-win68 (edge) and before 18.06.0-ce-win72 (stable) deserialized requests over the \\.\pipe\dockerBackend named pipe without verifying the validity of the deserialized .NET objects. This would allow a malicious user in the "docker-users" group (who may not otherwise have administrator access) to escalate to administrator privileges.
No Active Exploit Signals
CVSS Base Score
8.8
HIGH
EPSS Probability:2.47%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| docker | docker | 1.10.0.0-0, 1.10.1.42-1, 1.10.2.12, 1.10.2.14, 1.10.4.0, 1.10.6, 1.11.0, 1.11.1, 1.11.2, 1.12.0, 1.12.1, 1.12.2, 1.12.3, 1.12.5, 1.13.0, 1.13.1, 17.0.4, 17.0.5, 17.03.0, 17.03.1, 17.04.0, 17.06.0, 17.06.1, 17.06.2, 17.07.0, 17.09.0, 17.09.1, 17.10.0, 17.11.0, 17.12.0, 18.01.0, 18.02.0, 18.03.0, 18.03.1, 18.04.0, 18.05.0 |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
2.467%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | MITRE Corporation · N/A · USA |
| Reserved | 2018-08-18T00:00:00 |
| Published | 2018-09-01T01:00:00 |
| Patch Date | 2018-08-31 |
| Last Updated | 2024-08-05T09:54:03 |
Community Chatter & Buzz