CVE-2017-18641
EUVD-2017-973210.02.2020, 01:15
In LXC 2.0, many template scripts download code over cleartext HTTP, and omit a digital-signature check, before running it to bootstrap containers.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| linuxcontainers | lxc | 2.0.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| lxc |
| ||||||||||||||||||||||||||
| lxc-templates |
|
Common Weakness Enumeration