CVE-2019-13509
18.07.2019, 16:15
In Docker CE and EE before 18.09.8 (as well as Docker EE before 17.06.2-ee-23 and 18.x before 18.03.1-ee-10), Docker Engine in debug mode may sometimes add secrets to the debug log. This applies to a scenario where docker stack deploy is run to redeploy a stack that includes (non external) secrets. It potentially applies to other API users of the stack API if they resend the secret.Enginsight
Vendor | Product | Version |
---|---|---|
docker | docker | 18.09.0 ≤ 𝑥 < 18.09.8 |
docker | docker | 17.03.2:1 |
docker | docker | 17.03.2:2 |
docker | docker | 17.03.2:3 |
docker | docker | 17.03.2:4 |
docker | docker | 17.03.2:5 |
docker | docker | 17.03.2:6 |
docker | docker | 17.03.2:7 |
docker | docker | 17.03.2:8 |
docker | docker | 17.06.2:1 |
docker | docker | 17.06.2:10 |
docker | docker | 17.06.2:11 |
docker | docker | 17.06.2:12 |
docker | docker | 17.06.2:13 |
docker | docker | 17.06.2:15 |
docker | docker | 17.06.2:16 |
docker | docker | 17.06.2:17 |
docker | docker | 17.06.2:18 |
docker | docker | 17.06.2:19 |
docker | docker | 17.06.2:2 |
docker | docker | 17.06.2:20 |
docker | docker | 17.06.2:21 |
docker | docker | 17.06.2:22 |
docker | docker | 17.06.2:3 |
docker | docker | 17.06.2:4 |
docker | docker | 17.06.2:5 |
docker | docker | 17.06.2:6 |
docker | docker | 17.06.2:7 |
docker | docker | 17.06.2:8 |
docker | docker | 17.06.2:9 |
docker | docker | 18.03.1:1 |
docker | docker | 18.03.1:2 |
docker | docker | 18.03.1:3 |
docker | docker | 18.03.1:4 |
docker | docker | 18.03.1:5 |
docker | docker | 18.03.1:6 |
docker | docker | 18.03.1:7 |
docker | docker | 18.03.1:8 |
docker | docker | 18.03.1:9 |
docker | docker | 𝑥 < 18.09.8 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References