Vulnerabilities > Docker > Docker > 1.1.0

DATE CVE VULNERABILITY TITLE RISK
2018-02-06 CVE-2014-5282 Improper Input Validation vulnerability in Docker
Docker before 1.3 does not properly validate image IDs, which allows remote attackers to redirect to another image through the loading of untrusted images via 'docker load'.
network
low complexity
docker CWE-20
8.1
2017-10-06 CVE-2014-0047 Unspecified vulnerability in Docker
Docker before 1.5 allows local users to have unspecified impact via vectors involving unsafe /tmp usage.
local
low complexity
docker
7.8
2016-06-01 CVE-2016-3697 Permissions, Privileges, and Access Controls vulnerability in multiple products
libcontainer/user/user.go in runC before 0.1.0, as used in Docker before 1.11.2, improperly treats a numeric UID as a potential username, which allows local users to gain privileges via a numeric username in the password file in a container.
local
low complexity
docker linuxfoundation opensuse CWE-264
7.8