CVE-2017-18641
10.02.2020, 01:15
In LXC 2.0, many template scripts download code over cleartext HTTP, and omit a digital-signature check, before running it to bootstrap containers.Enginsight
| Vendor | Product | Version |
|---|---|---|
| linuxcontainers | lxc | 2.0.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| lxc |
| ||||||||||||||||||||||||||
| lxc-templates |
|
Common Weakness Enumeration