Vulnerabilities > Docker > Docker > 1.11.0

DATE CVE VULNERABILITY TITLE RISK
2017-01-31 CVE-2016-9962 Race Condition vulnerability in Docker
RunC allowed additional container processes via 'runc exec' to be ptraced by the pid 1 of the container.
local
high complexity
docker CWE-362
6.4
2016-06-01 CVE-2016-3697 Permissions, Privileges, and Access Controls vulnerability in multiple products
libcontainer/user/user.go in runC before 0.1.0, as used in Docker before 1.11.2, improperly treats a numeric UID as a potential username, which allows local users to gain privileges via a numeric username in the password file in a container.
local
low complexity
docker linuxfoundation opensuse CWE-264
2.1