CVE-2017-18641
10.02.2020, 01:15
In LXC 2.0, many template scripts download code over cleartext HTTP, and omit a digital-signature check, before running it to bootstrap containers.Enginsight
Vendor | Product | Version |
---|---|---|
linuxcontainers | lxc | 2.0.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
lxc |
| ||||||||||||||||||||||||||
lxc-templates |
|
Common Weakness Enumeration