docker.io vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the docker.io package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Unprotected Alternate Channel

<20.10.21-0ubuntu1~18.04.3+esm3
  • M
Unprotected Alternate Channel

<20.10.21-0ubuntu1~18.04.3+esm3
  • M
Incorrect Authorization

*
  • M
Missing Encryption of Sensitive Data

<20.10.21-0ubuntu1~18.04.3+esm3
  • M
Directory Traversal

<20.10.21-0ubuntu1~18.04.3+esm3
  • M
Origin Validation Error

*
  • M
Incorrect Resource Transfer Between Spheres

<20.10.21-0ubuntu1~18.04.3+esm2
  • M
CVE-2024-36623

<20.10.21-0ubuntu1~18.04.3+esm3
  • M
Race Condition

<20.10.21-0ubuntu1~18.04.3+esm3
  • M
CVE-2024-36621

<20.10.21-0ubuntu1~18.04.3+esm3
  • M
CVE-2022-36109

<20.10.21-0ubuntu1~18.04.1
  • L
Access of Resource Using Incompatible Type ('Type Confusion')

*
  • M
Information Exposure

<20.10.7-0ubuntu5~18.04.3
  • M
Improper Preservation of Permissions

<20.10.7-0ubuntu5
  • M
Improper Preservation of Permissions

<20.10.7-0ubuntu1~18.04.2
  • M
Resource Exhaustion

<20.10.7-0ubuntu1~18.04.1
  • M
Directory Traversal

<20.10.7-0ubuntu1~18.04.1
  • M
Insufficiently Protected Credentials

<19.03.6-0ubuntu1~18.04.2
  • M
Improper Input Validation

<20.10.7-0ubuntu1~18.04.1
  • L
Double Free

<18.09.7-0ubuntu1~18.04.4
  • M
Race Condition

<18.09.7-0ubuntu1~18.04.3
  • M
OS Command Injection

<18.06.1-0ubuntu1.2~18.04.1
  • L
Resource Exhaustion

<18.09.2-0ubuntu1~18.04.1
  • L
Improper Certificate Validation

<18.06.1-0ubuntu1~18.04.1
  • M
CVE-2018-10892

<18.06.1-0ubuntu1~18.04.1
  • M
Information Exposure

<18.06.1-0ubuntu1~18.04.1
  • L
Improper Input Validation

<18.06.1-0ubuntu1~18.04.1
  • M
Race Condition

<1.13.1-0ubuntu4